CVE-2026-58048: SQL Injection
Published Jul 31, 2026
·Updated
Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context.
Affected Software
1 affected component
cPanel
Event History
Jul 31, 2026
CVE Published
via MITRE·04:35 PM
Data Sourced
via MITRE·04:35 PM
DescriptionWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-58048?
CVE-2026-58048 has a critical severity rating of 9.4.
2
What vulnerabilities are associated with CVE-2026-58048?
CVE-2026-58048 is associated with improper preservation of SQL mode, leading to SQL injection in cPanel.
3
How do I fix CVE-2026-58048?
To fix CVE-2026-58048, upgrade to the latest version of cPanel that addresses this vulnerability.
4
What is the impact of CVE-2026-58048 on cPanel users?
CVE-2026-58048 allows execution of SQL commands in a root context, potentially compromising user data.
5
When was CVE-2026-58048 published?
CVE-2026-58048 was published on July 31, 2026.