๐Ÿ” CVE Alert

CVE-2026-65642

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Insecure direct object reference in Plesk 18.0.79.7 and earlier or 18.0.80 through 18.0.80.3, allows remote authenticated users to read and modify other customers' databases.

CWE CWE-639
Vendor webpros
Product plesk
Published Aug 26, 2026
Stay Ahead of the Next One

Get instant alerts for webpros plesk

Be the first to know when new unknown vulnerabilities affecting webpros plesk are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

WebPros / Plesk
0 โ‰ค 18.0.79.7 18.0.80 < 18.0.80.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.plesk.com: https://support.plesk.com/hc/en-us/articles/42844242102679-Vulnerability-CVE-2026-65642-in-Plesk-s-database-management-interface

Credits

๐Ÿ” Aziz Knani