**Yes, there's a major ongoing wave of compromises hitting cPanel/WHM servers right now, tied to a critical vulnerability (CVE-2026-41940).**
This is a pre-authentication bypass (via CRLF injection in the login/session flow) that lets unauthenticated attackers gain full control of exposed...