CVE-2026-32992

EUVD-2026-30180
SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.2 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 22.52%
Affected Products (NVD)
VendorProductVersion
cpanelcpanel
126.0.0 ≤
𝑥
< 126.0.59
cpanelcpanel
130.0.0 ≤
𝑥
< 130.0.23
cpanelcpanel
132.0.0 ≤
𝑥
< 132.0.32
cpanelcpanel
134.0.0 ≤
𝑥
< 134.0.26
cpanelcpanel
136.0.0 ≤
𝑥
< 136.0.10
cpanelwp_squared
126.1.0 ≤
𝑥
< 136.1.12
cpanelwhm
126.0.0 ≤
𝑥
< 126.0.59
cpanelwhm
130.0.0 ≤
𝑥
< 130.0.23
cpanelwhm
132.0.0 ≤
𝑥
< 132.0.32
cpanelwhm
134.0.0 ≤
𝑥
< 134.0.26
cpanelwhm
136.0.0 ≤
𝑥
< 136.0.10
𝑥
= Vulnerable software versions