CVE Tools

Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

The Hacker NewsBy The Hacker News

Reported exploitedBackup plugin for cPanel & WHMBackup extension for Plesk

Our summary

Acronis says CVE-2026-87886 has been used in limited, targeted attacks against its Backup plugin for cPanel & WHM and Backup extension for Plesk. The insecure file permissions issue affects Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021 and Acronis Backup extension for Plesk (Linux) before build 1.8.11.638, allowing a low-privileged local attacker to elevate privileges and potentially run arbitrary code; update to 1.9.3 HF3 and the latest Plesk release.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store