RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Knowledge
/
KEV Catalog
/
CVE-2026-41940
Corpus
+ Request intel
workspace
CVE
CVE-2026-41940
P1
⬤ KNOWN RANSOMWARE USE
WebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability
WebPros · cPanel & WHM and WP2 (WordPress Squared)
Date added (CISA)
2026-04-30
Remediation due
2026-05-03
Known ransomware use
Yes
Remediation priority
P1 — known ransomware use · past CISA due date
Overview
ATT&CK
Related
Related
Nothing linked yet
No threat actor or pipeline report has been cross-referenced against this CVE yet.
Source:
NVD ↗
·
CISA KEV Catalog ↗
CVE-2026-41940: WebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability · RaqibCTI