Home > Control panel > Operations notices > Plesk panel critical update for CVE-2026-64639

Related Links

Notice Links:

Notice

Plesk panel critical update for CVE-2026-64639

PostedThu, 13 Aug 2026 23:31 PM UTC
Thu, 13 Aug 2026 19:31 PM EDT
Last UpdateThu, 13 Aug 2026 23:35 PM UTC (7 hours ago)
Thu, 13 Aug 2026 19:35 PM EDT
StatusClosed

Plesk has asked all users update servers running their hosting panel, due to a signiificant security issue, designated CVE-2026-64639

These issues affect all Plesk versions prior to 18.0.79.6. If this issue is left unaddressed, a customer who can clone or copy a database on the server could end up with database server administrator privileges. We are not aware of any mitigations.

Further details and can be found at https://support.plesk.com/hc/en-us/articles/42521305418903-Vulnerability-CVE-2026-64639-Privilege-Escalation-via-Database-Cloning-in-Plesk

Where possible we have automatically updated customers plesk installations to bring them up to date.

Anyone who requires help to complete this update, please open a support ticket with us https://rimuhosting.com/ticket/enterticketdetails.jsp

#

Keep You Updated?

Log in to subscribe to changes to this notice.

Set your operation notice contact details for future notifications.