Discussion on "Acronis Backup Plugin CVE-2026-87886: Hosting LPE Actively Exploited" | Hashnode
Discussion on "Acronis Backup Plugin CVE-2026-87886: Hosting LPE Actively Exploited". A low-privileged attacker on a Linux hosting server running Acronis Backup can escalate to root - and exploitation against cPanel and WHM deployments is already confirmed in the wild.
CVE: CVE-2026-8