CVE-2026-67614: CyberPanel < 3.0.0 Hard-coded JWT Secret Authentication Bypass via WebTerminal
CyberPanel before 3.0.0 contains a hard-coded JWT secret vulnerability in the WebTerminal FastAPI SSH service that allows unauthenticated remote attackers to forge valid authentication tokens and obtain an interactive root shell via WebSocket on port 8888. Attackers can craft a forged JWT signed with the hardcoded secret value, specifying sshuser=root, to authenticate to the terminal service without any valid credentials and receive a root shell.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-67614?
CVE-2026-67614 has a critical severity rating of 9.8.
How do I fix CVE-2026-67614?
To mitigate CVE-2026-67614, upgrade CyberPanel to version 3.0.0 or later.
What does CVE-2026-67614 allow an attacker to do?
CVE-2026-67614 allows unauthenticated remote attackers to obtain an interactive root shell via forged authentication tokens.
Which software is affected by CVE-2026-67614?
CVE-2026-67614 affects CyberPanel versions prior to 3.0.0 and its WebTerminal FastAPI SSH service.
What is the impact of CVE-2026-67614?
The impact of CVE-2026-67614 includes potential unauthorized remote access leading to complete system compromise.