Skip to main content
Navigated to Security — Briefings — 2026 06 litespeed cpanel plugin unix symbolic li
highVulnerability

LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability

Published June 15, 2026Axus Networks Threat Intelligence

Summary

LiteSpeed cPanel plugin contains a UNIX symbolic link (Symlink) following vulnerability that could allow a user with FTP or web shell access on a shared hosting server running CloudLinux/CageFS.

Source: CISA KEV