Security Advisory
CVE-2026-58046
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Improper neutralization in the Plesk XML-RPC API allows a remote authenticated low-privileged user to perform SQL injection and read arbitrary data from the Plesk database, leading to full compromise of the panel.