One LiteSpeed Hosting Account Could Escape CageFS and Reach Root

A critical LiteSpeed Enterprise flaw can let a low-privilege website user cross a shared server's account boundary, bypass CageFS and potentially gain root access.

A critical LiteSpeed Enterprise flaw can let a low-privilege website user cross a shared server's account boundary, bypass CageFS and potentially gain root access.

Red Hat says a failed SASL PLAIN login can leave a privileged identity behind in 389 Directory Server. A second anonymous bind on the same connection may inherit full Directory Manager control without valid credentials.

A hosting customer did not need WHM administrator access to reach the server's highest privilege. cPanel says its EmailTrack flaw could lead to code execution as root.

Microsoft has confirmed exploitation of two Windows privilege-escalation vulnerabilities. One can break out of an AppContainer on older Windows systems; the other affects the Update Stack on current Windows releases. Together, they turn partial access into a race for SYSTEM.

A public PoC claims Avast’s malware sandbox can become a route to Windows SYSTEM. Gen Digital says the privilege-escalation flaw has been fixed.

FalconFlank turns CrowdStrike Falcon’s Office macro clean-up into a path from a low-privilege Windows account to SYSTEM. The public PoC has been independently reproduced.

HardBreacher turns a trusted Kaspersky endpoint-security component into a privilege-escalation primitive. Kaspersky says the issue is fixed.

JFrog fixed a critical Artifactory authentication bypass that can grant administrative privileges without credentials under the default configuration.

KerberLoss can disrupt Kerberos services. ResetNightmare can turn a directory write permission into a privileged password reset and domain takeover.

CISA confirms active exploitation of Linux kernel CVE-2026-53362. A public IPv6 fragmentation exploit can turn local access into root and, under specific conditions, escape an unprivileged container.