VYPR
Unrated severityNVD Advisory· Published Jul 30, 2026· Updated Jul 30, 2026

CVE-2026-58046

CVE-2026-58046

Description

Improper neutralization in the Plesk XML-RPC API allows a remote authenticated low-privileged user to perform SQL injection and read arbitrary data from the Plesk database, leading to full compromise of the panel.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.