Home > Control panel > Operations notices > Vulnerabiluty in Phusion Passenger Watchdog

Related Links

Notice Links:

Notice

Vulnerabiluty in Phusion Passenger Watchdog

PostedMon, 17 Aug 2026 00:00 AM UTC
Sun, 16 Aug 2026 20:00 PM EDT
Last UpdateMon, 17 Aug 2026 00:13 AM UTC (6 hours ago)
Sun, 16 Aug 2026 20:13 PM EDT
StatusOpen

Users of the Phusion Passenger Watchdog module, especially for Plesk and CPanel packages, are recommended to update to the latest version as soon as possible.

The vulnerability potentially allows local privilege escalation: an attacker with access to a normal, logged-in user account could gain root-level access to the server.

Both Plesk and CPanel have patched packages available.

No CVE has been assigned at time of writing. Links to original reports and recomended steps are on the Plesk Advisory and the CPanel Advisory

Anyone needing extra helpo with updates, please open a support ticket at https://rimuhosting.com/ticket/enterticketdetails.jsp

#

Keep You Updated?

Log in to subscribe to changes to this notice.

Set your operation notice contact details for future notifications.