CVE WATCH / VULNERABILITY DETAIL

CVE-2026-68492

UNKNOWNCVSS 0NVD feed

Published 23 September 2026 · tracked since 24 September 2026

Description

An untrusted search path vulnerability in Plesk from 18.0.34 before 18.0.80.8 and 18.0.81 before 18.0.81.1 allows remote authenticated users to execute arbitrary code as root via the "Plesk RESTful API" extension from 2.4.2 before 2.4.7.

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-68492 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-68492

UNKNOWNCVSS 0NVD feed

Published 23 September 2026 · tracked since 24 September 2026

Description

An untrusted search path vulnerability in Plesk from 18.0.34 before 18.0.80.8 and 18.0.81 before 18.0.81.1 allows remote authenticated users to execute arbitrary code as root via the "Plesk RESTful API" extension from 2.4.2 before 2.4.7.

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]