CVE-2026-58046
EUVD-2026-5101930.07.2026, 06:25
Improper neutralization in the Plesk XML-RPC API allows a remote authenticated low-privileged user to perform SQL injection and read arbitrary data from the Plesk database, leading to full compromise of the panel.
Awaiting analysis
This vulnerability is currently awaiting analysis.