ZeroHour

CVE-2026-65646

CVSS 3.0
9.9 critical
EPSS
<1%p25
Published
()
Modified
Description

Improper neutralization of special elements in in Plesk's DNS zone management functionality allows remote authenticated users to disclose arbitrary local files and escalate privileges.

Weakness
CWE-74
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.