Acronis cPanel Backup Plugin: Exploited Privilege-Escalation Flaw on CISA’s List

Acronis has patched a privilege-escalation flaw in the backup plugin it offers hosting providers running cPanel and WHM, and says the flaw has been used in “limited, targeted attacks” against servers with the plugin installed. The vulnerability, CVE-2026-87886, comes from insecure file permissions and is scored 7.8, high. The fix for cPanel and WHM is version 1.9.3 HF3, … Continue reading Acronis cPanel Backup Plugin: Exploited Privilege-Escalation Flaw on CISA’s List