Skip to main content

More information on csf flaw?

Comments

4 comments

  • ciao70

    Where did you read that a new version of CSF is planned for September 3rd?

    https://docs.cpanel.net/changelogs/configserver-security-firewall-csf-change-log/

    0
  • Scott Galambos

    I got an email.  it was not spam.
    "[Important] cPanel Security Advisory: Upcoming ConfigServer Firewall (CSF) Security Update - September 3 at 10:00 AM CT"

    --
    We are writing to let you know that a ConfigServer Firewall (CSF) security update is currently scheduled for release on September 3 at 10:00 AM US Central Time.

    The release addresses vulnerabilities in CSF, including vulnerabilities rated up to Critical severity. Technical details and support documentation will be published following the release. Please do not share or redistribute this information outside your organization until the public release and technical details are available.

    Affected Versions:
    Servers with ConfigServer Firewall (CSF) installed running cpanel-csf 16.30-1 or older are expected to be affected. Servers without CSF installed are not affected.
    ...

    0
  • ciao70

    CSF update released

    16.31-1


    2026 September 3
    • [Security] Targeted Security Release
    0

Please sign in to leave a comment.