CyberRota Analysis
AI-GeneratedA critical OS command injection vulnerability in Plesk enables remote authenticated users to execute arbitrary code with root privileges, potentially compromising the entire system. Organizations utilizing Plesk should prioritize patching this vulnerability to mitigate the risk of unauthorized access and system exploitation. Immediate action is essential for any environment where Plesk is deployed to protect sensitive data and maintain system integrity.
CVE
CVE-2026-87898
Severity
CRITICAL
CVSS
9.4
EPSS
1.01%
Original NVD Description
OS command injection in Plesk allows remote authenticated users to execute arbitrary code with root privileges.