Active Exploitation of cPanel CVE-2026-41940 Used to Install Filemanager Backdoor
Researchers say the threat actor “Mr_Rot13” is actively exploiting cPanel flaw CVE-2026-41940 to install a cross-platform backdoor called Filemanager, steal credentials and harvest sensitive data from compromised hosts.