Security Notice from PDTHosting

  • Friday, 1st May, 2026
  • 16:06pm

A recently disclosed critical vulnerability affecting cPanel & WHM (CVE-2026-41940) has been actively exploited worldwide and posed a serious security risk to millions of hosting environments.

We want to assure all PDTHosting clients that our infrastructure team responded immediately after the official patch release.

  • Security patch deployed within approximately 3 hours
  • All affected systems secured successfully
  • No downtime or service interruption
  • Zero client data loss detected
  • Additional security hardening implemented
  • Continuous monitoring enabled across all systems

All hosting services are currently operating normally and remain fully protected.

For transparency, you may review public security reports regarding this vulnerability:

https://www.malwarebytes.com/blog/news/2026/05/actively-exploited-cpanel-bug-exposes-millions-of-websites-to-takeover

https://www.techradar.com/pro/security/the-internet-is-falling-down-critical-cpanel-crlf-injection-vulnerability-puts-tens-of-millions-of-websites-at-risk-of-total-compromise-hosting-providers-urged-to-apply-cve-2026-41940-patch-immediately

Your security remains our highest priority.

Security & Infrastructure Team
PDTHosting

« Back