GitHub meldet heute Morgen über seine Statusseite eine verschlechterte Leistung:
https://www.githubstatus.com/
Pro Seite kann dieses Problem unter anderem Pull Requests, Issues, Copilot, Actions, Webhooks und API Requests betreffen. Kunden sollten der GitHub-Statusseite für die neuesten Informationen folgen.
resolved
Dieser Vorfall wurde behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Service disruption at the Phoenix Data Center
Beginn 13. August 2026 um 12:53 UTC · 2d 17h
OutageKritischer Vorfall
Betroffene Komponenten
PHX Network
investigating
We are currently investigating network issues affecting servers in our Phoenix Data Center. During this time, you may experience connectivity disruptions or degraded performance.
Our engineers are actively working to identify the root cause and restore service stability as quickly as possible.
If you have any questions or require assistance, please contact us via chat or open a support case through portal.liquidweb.com
We appreciate your patience and understanding while we work to resolve this issue. Thank you.
identified
Dear Valued Customer,
We are currently responding to a critical facilities issue affecting our Phoenix, Arizona data center.
A major chiller equipment failure at the facility has significantly reduced cooling capacity, resulting in elevated temperatures and an increased risk of service disruption and potential hardware impact.
The data center provider is actively working to restore normal cooling operations. Replacement work is underway, with current estimates indicating repairs may take 10–16 hours or longer.
Additional information regarding the facility incident is available on the data center provider's status page:
https://status.phoenixnap.com/incidents/dnjp5pfv2mmh
Our teams are closely monitoring conditions and working directly with the data center provider to minimize customer impact. To protect customer infrastructure and reduce the risk of hardware damage or data loss, we may need to perform controlled shutdowns of affected systems if facility temperatures reach unsafe levels. Where necessary, we will prioritize orderly shutdown procedures to protect the underlying infrastructure.
Customers with services hosted within the affected Phoenix facility should prepare for potential service interruptions while remediation efforts continue.
We understand the seriousness of this situation and the impact an extended disruption may have on your business. We will continue to provide updates as conditions change and additional information becomes available. We sincerely apologize for the disruption and appreciate your patience as we work to protect your infrastructure and restore normal operations.
Sincerely,
Nexcess Support Team
identified
Dear Valued Customer,
Update: Our teams are continuing to work closely with our data center provider at the Phoenix location. Our data center teams and on-site vendors continue working to restore adequate cooling.
As part of our ongoing mitigation efforts, we are gracefully shutting down impacted systems where necessary to help protect customer data and reduce the risk of data corruption or hardware-related issues while temperatures remain elevated.
We apologize for the disruption and appreciate your patience as we work to protect your infrastructure and restore normal operations.
We will continue to provide updates as the situation progresses.
Sincerely,
Nexcess Support Team
identified
Dear Valued Customer,
We are continuing to work closely with our provider as they address the elevated temperatures at the Phoenix facility. Progress is being made, and temperatures are continuing to come down as cooling systems are restored and additional mitigation efforts are put in place.
We apologize for the disruption and appreciate your patience as we work to protect your infrastructure and restore normal operations. We will continue to provide updates as the situation progresses.
For the latest status and updates from the facility, please visit:
https://status.phoenixnap.com/incidents/dnjp5pfv2mmh
Sincerely,
Nexcess Support Team
monitoring
Internal ambient temperatures in our Phoenix, Arizona data center have continued to moderate and onsite Nexcess Engineers have begun to restore service to networking equipment and other services. Our Senior Engineering and Leadership teams are actively monitoring the situation and will continue to protect customer infrastructure and reduce the risk of hardware damage or data loss where necessary, however at this time customers should begin to see network service restoring to their environments.
monitoring
Our Nexcess Engineering teams continue working to restore all remaining systems and services in our Phoenix, Arizona data center. While significant progress has been made and many systems have returned to service, our teams are continuing to bring remaining infrastructure back online in a controlled and careful manner.
As systems and network services are restored, our Engineering and Operations teams are monitoring them very closely to confirm they remain stable and continue operating as expected. We are also actively watching environmental conditions and infrastructure health throughout the facility to reduce the risk of additional service disruption, hardware damage, or data loss.
Work will continue until all affected systems and services have been fully restored. Our Engineering and Leadership teams remain actively engaged, and we will continue to provide updates as restoration efforts progress and overall service stability is confirmed.
monitoring
Our Nexcess Engineering teams have successfully brought the majority of systems and services in our Phoenix, Arizona data center back online, and work continues actively to restore the remaining pending services.
For all restored systems, our teams are conducting thorough checks across the infrastructure to confirm complete stability and ensure there is no ongoing operational impact. Out of an abundance of caution, we continue to closely monitor facility environmental conditions and overall infrastructure health.
We will provide further updates in this space as restoration and verification efforts progress.
monitoring
Our Nexcess Engineering teams have brought the majority of systems and services in our Phoenix, Arizona data center back online, and work remains actively underway to restore the remaining pending services.
Over the past several hours, we have observed continued stability across all restored systems with no red flags identified. Out of an abundance of caution, our teams are continuing to perform ongoing checks and closely monitor facility environmental conditions alongside overall infrastructure health.
We will provide further updates in this space as restore and verification efforts progress.
monitoring
The vast majority of impacted servers have been brought online and are functional at this time. We continue to monitor the stability of the network to ensure normal operations.
Our engineers are still working on restoring functionality to the Cloud Sites Platform but are making progress. The root cause has been identified and progress is being made. Updates and more information regarding those efforts can be found on our Cloud Sites Status Page here: https://status.websitesettings.com/incidents/0l8hyyhr6v93
monitoring
We have restored all services and observed continued stability. We will keep a close eye on the platform and continue to update this page with any new developments.
resolved
All post-outage cleanup activities have been completed, and everything is working as expected. We will continue to monitor the environment, and this incident is now resolved.
Security Advisory: WordPress Security Update for CVE-2026-65640
Beginn 12. August 2026 um 15:44 UTC · Laufend
Pending
investigating
A security vulnerability, CVE-2026-65640, has been identified in WordPress that could allow an authenticated Author-level or higher user to achieve remote code execution through a malicious file upload on sites using Imagick and Ghostscript.
The vulnerability has been addressed through updates across supported WordPress branches.
Patched Versions:
Customers should update to the following patched version for their respective WordPress branch:
7.0.4
6.9.7
6.8.8
6.7.7
6.6.7
6.5.10
6.4.10
6.3.10
6.2.11
6.1.12
6.0.14
5.9.16
5.8.15
5.7.17
5.6.19
5.5.20
5.4.21
5.3.23
5.2.26
5.1.24
5.0.27
4.9.31
4.8.30
4.7.35
Recommended Action:
Customers are strongly encouraged to update WordPress core to the latest available patched version and ensure automatic updates are enabled where appropriate.
Customers with automatic updates enabled should receive the applicable update automatically. However, we recommend verifying the currently running WordPress version to ensure the security update has been successfully applied.
We will continue to monitor the situation and provide further updates if required.
If you need assistance or have any concerns, please reach us via live chat or via a case.
Additional information:
https://wordpress.org/news/2026/08/wordpress-7-0-4-release/
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-8vr3-7mxf-gx8w
A high-severity reflected XSS vulnerability, CVE-2026-64638, has been identified in the WordPress login interface. Exploitation requires a victim to visit a specially crafted URL and, under specific conditions, could potentially lead to PHP code execution.
Impacted versions
Impacted versions:
WordPress 4.7 – 7.0.2 (every release on every branch)
WordPress 4.6 and earlier — end of life, no patch available
Fixed versions:
WordPress 7.0.3
WordPress 6.9.6
WordPress 6.8.7
Equivalent minor releases on every remaining supported branch back to 4.7
Recommended Action
Customers are strongly encouraged to update WordPress core and ensure automatic security updates are enabled where appropriate. Since exploitation requires user interaction, customers should also remain vigilant against phishing attempts and avoid clicking suspicious or unsolicited links.
Customers with automatic security updates enabled should receive the applicable update automatically; however, we recommend verifying the currently running WordPress version.
There is currently no reported evidence of widespread exploitation in the wild. We will continue to monitor the situation and provide further updates if required.
If you need assistance or have any concerns, please contact our Support team.
VMware MT Service Degradation
Beginn 1. August 2026 um 01:34 UTC · 33m
OutageSchwerwiegender Vorfall
Betroffene Komponenten
VMware CloudVMware Private Cloud
investigating
Wir untersuchen intermittierende Konnektivität und erhöhte Latenz, die einige Dienste betreffen, die in der VMware MT-Umgebung gehostet werden.
Unsere Ingenieure arbeiten aktiv daran, die Ursache zu identifizieren und den normalen Service so schnell wie möglich wiederherzustellen.
Wir schätzen Ihre Geduld und Ihr Verständnis, während wir daran arbeiten, dieses Problem zu lösen. Wenn Sie Fragen oder Bedenken haben, öffnen Sie bitte ein Support-Ticket oder kontaktieren Sie uns per Chat.
resolved
Der Service wurde zu diesem Zeitpunkt wiederhergestellt und die betroffenen VMware MT-gehosteten Dienste funktionieren normal.
Vielen Dank für Ihre Geduld und Ihr Verständnis, während unsere Teams daran gearbeitet haben, dieses Problem zu lösen.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Am 17. Juli kündigte Wordpress.org zwei kritische RCE-Schwachstellen (Remote Code Execution) an, die gemeinhin als WP2Shell bekannt sind. Diese Sicherheitslücken existieren in Wordpress Core und ermöglichen eine nicht authentifizierte Anforderung, willkürlichen Code auf der Zielwebsite auszuführen.
Kunden, die die folgenden Wordpress-Versionen ausführen, wird dringend empfohlen, so schnell wie möglich auf die neueste Version zu aktualisieren:
Wordpress 6.8.x; fixiert in 6.8.6
WordPress 6.9.x; Fix in 6.9.5
WordPress 7.0.x; Fix in 7.0.2
WordPress 7.1 Beta, fixiert in 7.1 Beta2
Quelle: https://wordpress.org/news/2026/07/wordpress-7-0-2-release/
Veröffentlicht vor 2 Minuten. 17. Juli 2026 - 21:44 EDT
identified
Unsere Teams arbeiten weiterhin fleißig daran, die Auswirkungen der kürzlich veröffentlichten WordPress Core-Schwachstellen zu bewerten und zu überprüfen, ob geeignete Minderungsmaßnahmen ergriffen wurden. Wir sind weiterhin aktiv an unseren Ermittlungen beteiligt und beobachten die Situation auf neue Entwicklungen.
Wir werden die Situation weiterhin genau beobachten und alle zusätzlichen Schritte unternehmen, die zur Aufrechterhaltung der Systemsicherheit und -stabilität erforderlich sind. Wenn Sie Hilfe benötigen oder Bedenken haben, kontaktieren Sie bitte unser Support-Team.
monitoring
Die Dienste wurden wiederhergestellt und die Websites werden derzeit wie erwartet geladen. Unser Netzwerkteam untersucht weiterhin die zugrunde liegende Ursache und überwacht aktiv die Umwelt, um Stabilität zu gewährleisten.
Zu diesem Zeitpunkt scheinen alle Dienste normal zu funktionieren. Wenn Sie Probleme haben oder Hilfe benötigen, kontaktieren Sie bitte unser Support-Team.
identified
Das Problem wurde identifiziert und ein Fix wird implementiert.
identified
Wir arbeiten weiter an einer Lösung für dieses Problem.
identified
Angesichts der Schwere dieser Sicherheitsanfälligkeit haben Liquid Web Systems Engineers die betroffenen Wordpress-Anwendungen in unserer Flotte proaktiv aktualisiert. Kunden werden weiterhin dringend aufgefordert, ihre WordPress-Websites zu überprüfen und, falls betroffen, so schnell wie möglich auf die gepatchte Version zu aktualisieren.
resolved
Dieser Vorfall wurde behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Stromausfall in Phoenix, AZ
Beginn 16. Juli 2026 um 20:02 UTC · 4h 24m
OutageSchwerwiegender Vorfall
Betroffene Komponenten
DC4 - PHX
investigating
Eine Untergruppe von Servern in unserem Phoenix, AZ Rechenzentrum verlor Strom. Unser Team vor Ort untersucht.
monitoring
Die Primärmacht wurde wiederhergestellt, und wir beobachten die Situation.
resolved
Dieser Vorfall wurde behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Apache Service Disruption nach ModSecurity Update
Beginn 15. Juli 2026 um 21:35 UTC · 7d 21h
OutageSchwerwiegender Vorfall
Betroffene Komponenten
Cloud VPS HostingCloud Dedicated
investigating
Wir untersuchen ein Problem mit Apache-Diensten auf unseren Servern nach einem kürzlichen Update von EasyApache ModSecurity.
Kunden auf betroffenen Servern können feststellen, dass Websites nicht verfügbar sind, HTTP-Fehler oder Verbindungszeiten auftreten.
Unser Engineering-Team arbeitet derzeit daran, Dienstleistungen wiederherzustellen.
Brauchen Sie Hilfe? Chatten Sie mit uns oder erstellen Sie ein Ticket über my.liquidweb.com.
Wir schätzen Ihre Geduld und Ihr Verständnis, während wir daran arbeiten, den normalen Service wiederherzustellen.
monitoring
Ein Fix wurde implementiert und unser Engineering-Team überwacht die betroffenen Server, um zu bestätigen, dass die Apache-Dienste stabil bleiben.
resolved
Dieser Vorfall wurde behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Januscape Vulnerability (CVE-2026-53359)
Beginn 9. Juli 2026 um 14:34 UTC · 20d 4h
Pending
Betroffene Komponenten
Cloud VPS Hosting
investigating
Unser Team prüft derzeit die Auswirkungen und den Umfang von Januscape Vulnerability (CVE-2026-53359) und seine Auswirkungen auf Server in unserer Flotte und die beste Möglichkeit, Patches auf unsere Hosting-Infrastruktur anzuwenden.
Wir werden Mitteilungen an alle betroffenen Kunden senden, während wir daran arbeiten, die notwendigen Minderungsmaßnahmen anzuwenden.
Nächste Schritte:
Teams sind derzeit in der Überprüfung der Schwachstelle; nachfolgende Status-Updates werden folgen.
identified
Unsere Teams setzen weiterhin die erforderlichen Sicherheitsupdates für alle betroffenen Systeme als Reaktion auf die Januscape-Vulnerabilität (CVE-2026-53359) ein. Als Teil dieser Behebung erfordern einige Systeme einen kontrollierten Neustart, um den Patching-Prozess abzuschließen.
Nach jedem Neustart validieren wir die Systemverfügbarkeit, den Servicezustand und die Netzwerkverbindung. Systeme, die nicht wie erwartet in Betrieb genommen werden, werden von unseren Betriebsteams aktiv untersucht und wiederhergestellt.
Wir verstehen die Bedeutung der Aufrechterhaltung der Verfügbarkeit und arbeiten sorgfältig daran, diese Abhilfe zu schaffen und gleichzeitig die Auswirkungen der Kunden zu minimieren. Zusätzliche Updates werden bereitgestellt, wenn die Patching- und Validierungsbemühungen fortgesetzt werden.
resolved
Die Sicherheitsupdates wurden in der gesamten Liquid Web-Flotte angewendet.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
WHM-Anmeldefehler
Beginn 8. Juli 2026 um 21:49 UTC · 14h 10m
OutageSchwerwiegender Vorfall
Betroffene Komponenten
CPanel
investigating
Wir wurden darauf aufmerksam gemacht, dass ein großer Teil unserer cPanel-Kunden beim Versuch, sich bei WHM anzumelden, eine Fehlermeldung erhält.
"Ungültige Lizenzdatei". Falsche Behörde, die die Lizenz ausstellt.
WebPros (cPanel) ist sich des Problems bewusst und untersucht derzeit.
Wir schätzen Ihre Geduld, während sie daran arbeiten, das Problem zu lösen.
monitoring
cPanel hat an der Verbesserung der Leistung seiner Lizenzserver gearbeitet und Änderungen implementiert. Wir sehen den Zugang zu WHM und cPanel ohne Intervention von der Unterstützung wiederhergestellt.
Wenn Sie immer noch Probleme haben, wenden Sie sich bitte an die Unterstützung und wir helfen Ihnen gerne weiter.
monitoring
WebPros hat erklärt, dass das Problem behoben wurde und dass Server beginnen sollten, Lizenzen ordnungsgemäß zu erneuern. Wenn Sie immer noch Probleme beim Anmelden haben, kontaktieren Sie uns gerne per Chat oder E-Mail und wir können die Lösung beschleunigen.
resolved
Wir haben anhaltende Stabilität beobachtet, und die cPanel-Lizenzupdates sind bisher reibungslos verlaufen.
Wenn Sie weitere Hilfe benötigen, zögern Sie bitte nicht, sich per Chat oder E-Mail an unser Support-Team zu wenden.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Infrastrukturprobleme im Phoenix Data Center
Beginn 2. Juli 2026 um 04:49 UTC · 5h 48m
Pending
Betroffene Komponenten
DC4 - PHX
investigating
Wir untersuchen Probleme mit Servern in unserem Phoenix Data Center. Möglicherweise gibt es Verbindungsprobleme. Unsere Ingenieure untersuchen derzeit das Problem, um die Ursache zu isolieren und die Stabilität wiederherzustellen.
Brauchen Sie Hilfe? Chatten Sie mit uns oder erstellen Sie einen Fall über my.liquidweb.com.
Wir schätzen Ihre Geduld und Ihr Verständnis, während wir daran arbeiten, diesen Service wiederherzustellen. Vielen Dank.
identified
Wir untersuchen ein Problem, das die Konnektivität zwischen unserem Phoenix Data Center und internen Diensten betrifft. Wir haben festgestellt, dass das Problem mit der Netzwerkverbindung mit einem Upstream-Anbieter während eines geplanten Wartungsfensters zusammenhängt.
Derzeit wird erwartet, dass kundenorientierte Dienste aus öffentlichen Netzwerken zugänglich bleiben, und wir haben keine weit verbreiteten Auswirkungen auf extern zugängliche Dienste festgestellt. Unsere Ingenieure arbeiten aktiv mit dem Upstream-Anbieter zusammen, um die vollständige Konnektivität so schnell wie möglich wiederherzustellen.
Brauchen Sie Hilfe? Chatten Sie mit uns oder erstellen Sie einen Fall über my.liquidweb.com.
Wir schätzen Ihre Geduld und Ihr Verständnis, während wir daran arbeiten, diesen Service wiederherzustellen. Vielen Dank.
monitoring
Wir sehen eine kontinuierliche Verbesserung der Netzwerkverbindung, da sich die betroffenen Verbindungen zu erholen beginnen. Alle Kunden-Websites und Server bleiben online und zugänglich.
Die geplante Wartung ist noch im Gange, und unser Engineering-Team überwacht aktiv die Umgebung, um sicherzustellen, dass die Konnektivität vollständig wiederhergestellt wird. Wir werden weiterhin Updates bereitstellen, sobald zusätzliche Informationen verfügbar sind.
Brauchen Sie Hilfe? Chatten Sie mit uns oder erstellen Sie einen Fall über my.liquidweb.com.
Wir schätzen Ihre Geduld und Ihr Verständnis, während wir daran arbeiten, diesen Service wiederherzustellen. Vielen Dank.
resolved
Wir haben die Situation beobachtet, und alles ist stabil geblieben. Dieser Vorfall ist nun behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Sicherheitshinweise: Aktualisieren Sie Avada Builder und UpdraftPlus WordPress Plugins sofort
Beginn 26. Juni 2026 um 05:23 UTC · 13d 8h
Pending
Betroffene Komponenten
InterWorx
investigating
Wir empfehlen allen Kunden, die WordPress verwenden, zu überprüfen, ob die folgenden Plugins auf die neuesten verfügbaren Versionen aktualisiert werden.
Kürzlich offenbarte Sicherheitslücken betreffen ältere Versionen dieser Plugins:
CVE-2026-6279 - Avada Builder (Fusion Builder) - Nicht authentifizierte Ferncodeausführung
Betroffene Versionen: 3.15.2 und früher
CVE-2026-10795 – UpdraftPlus Backup Plugin – Authentifizierungs-Bypass
Betroffene Versionen: 1.26.4 und früher
Diese Sicherheitslücken können es nicht authentifizierten Angreifern ermöglichen, die Kontrolle über anfällige WordPress-Sites zu erlangen und WordPress-Benutzerkonten zu kompromittieren, wenn die Plugins nicht auf die neuesten verfügbaren Versionen aktualisiert wurden.
Wenn Ihre Website eines dieser Plugins verwendet, empfehlen wir Ihnen dringend:
Aktualisieren Sie die betroffenen Plugins sofort auf die neueste verfügbare Version.
Überprüfen Sie Ihre WordPress-Installation auf unerwartete Administratorkonten, Plugins oder geänderte Dateien.
Kontaktieren Sie unser Support-Team, wenn Sie glauben, dass Ihre Website betroffen ist oder wenn Sie Unterstützung bei der Überprüfung Ihrer Installation benötigen.
resolved
Dieses Advisory wird nun geschlossen.
Wir empfehlen unseren Kunden, sicherzustellen, dass alle betroffenen WordPress-Plugins auf die neuesten verfügbaren Versionen aktualisiert wurden und die Best Practices für die WordPress-Sicherheit weiterhin befolgen.
Wenn Sie der Meinung sind, dass Ihre Website möglicherweise betroffen ist oder Unterstützung benötigt, wenden Sie sich bitte an unser Support-Team.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Auswirkungen des Netzwerkdienstes, Teilmenge der Dienste, DC3
Beginn 24. Juni 2026 um 13:57 UTC · 2h 51m
OutageKritischer Vorfall
Betroffene Komponenten
LAN NetworkDC3 - LAN
investigating
Uns ist bekannt, dass ein Netzwerkdienstereignis eine Teilmenge von Kunden in unserem DC3 Data Center in Lansing, Michigan, betrifft. Liquid Web Network Engineers sind derzeit engagiert und arbeiten daran, den Service so schnell wie möglich wiederherzustellen. Wir werden heute Morgen so bald wie möglich ein weiteres Update mit weiteren Informationen bereitstellen.
monitoring
Liquid Web Network Engineers haben die Ursache identifiziert und einen Fix implementiert, der Netzwerkverkehr hat zu diesem Zeitpunkt zu den betroffenen Bereichen des Rechenzentrums wieder aufgenommen. Wir beobachten aktiv die Umwelt. Wir werden heute Morgen so bald wie möglich ein weiteres Update mit weiteren Informationen bereitstellen.
resolved
Dieser Vorfall wurde behoben.
Automatisch aus der offiziellen Störungsmeldung übersetzt.
Monitoring Service Degradation
Beginn 18. Juni 2026 um 17:11 UTC · 44m
Pending
investigating
We are currently experiencing a partial degradation in our monitoring and alerting system. Some monitoring components are intermittently unable to generate or relay alerts as expected.
Our engineering teams are actively investigating the issue to identify the cause and restore full monitoring functionality.
We appreciate your patience and understanding while we work to resolve this issue. If you have any questions or concerns, please open a support ticket or contact us via chat.
Monitoring Service Degradation
Beginn 6. Juni 2026 um 13:20 UTC · 1d 4h
IssuesGeringfügiger Vorfall
investigating
We are currently experiencing a service degradation affecting our monitoring infrastructure and monitoring ticket integration.
As a result, some monitoring alerts may be delayed in being generated, delivered, or escalated to our teams. Customer services themselves are not impacted by this issue; however, the delay in alert processing may result in slower detection and response to service-related incidents.
Our engineers are actively investigating and working to restore normal monitoring performance as quickly as possible.
We appreciate your patience and understanding while we work to resolve this issue. If you have any questions or concerns, please open a support ticket or contact us via chat.
monitoring
Our teams have implemented a fix for the issue affecting the monitoring system and are continuing to monitor the service to ensure stability.
We will provide additional updates if any further issues are identified.
Thank you for your patience.
resolved
This incident has been resolved.
Phone System Issues
Beginn 27. Mai 2026 um 19:58 UTC · 3h 54m
OutageSchwerwiegender Vorfall
Betroffene Komponenten
Phone
investigating
We are investigating an issue preventing customers from reaching support via Phone.
Please use Live Chat or open a Support Case at my.liquidweb.com for immediate assistance while we restore the phone service.
We appreciate your patience and understanding as we work to restore this service. Thank you.
monitoring
Our phone system is now back online, and agents should be able to connect and accept calls.
We will continue to monitor the system to ensure stability.
Thank you for your continued patience.
A recently disclosed vulnerability (CVE-2026-48172) in the LiteSpeed user-end cPanel plugin allows an unprivileged user to escalate to root privileges in plugin versions between v2.3 and v2.4.4. This issue has been classified as high severity. Public reports suggest the vulnerability was being exploited in the wild in May 2026, and indicators of compromise have been published. On May 19th cPanel issued a separate update which disabled and removed the plugin. This vulnerability is patched in v2.4.7 of the user-end plugin and v5.3.1.0 of the WHM plugin (which bundles the user-end plugin).
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2026-48172
https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/
https://support.cpanel.net/hc/en-us/articles/40599423437079-Security-LiteSpeed-plugin-automatically-removed-during-nightly-update-May-19-2026
Status
Our security and operations teams are completing an assessment of our infrastructure and will force a upcp update today for all systems we are able to reach. We plan to review for Indicators of Compromise following the updates.
Customer Guidance
Customers managing their own systems or using unmanaged services should ensure they have applied the latest security updates or have removed the plugin. Customers should also review their systems for indicators of compromise using the information provided in the LiteSpeed blog article.
Should you need any assistance or have any questions or concerns, you can reach us through the following channels:
Live Chat via the Customer Portal: https://my.liquidweb.com
Email: [email protected]
We will continue monitoring this vulnerability and will provide updates if new information becomes available.
resolved
Status Update
Our security and operations teams completed the assessment of our infrastructure, which forcd a upcp update today for all systems we were able to reach. We also reviewed environments for the indicators of compromise noted in the LiteSpeed article below. We will address any findings via a support ticket. We are resolving this incident at this time.
Customer Guidance
Customers are strongly encouraged to ensure they are running the updated version of the LiteSpeed plugin and to review their systems for the indicators of compromise. If our team does not have access to your system because it is unmanaged, self-managed, or access has been updated but not shared with Liquid Web, then we would not have been able to reach your system in order to apply updates or check for indicators of compromise.
If you have any questions or concerns, you can reach us through the following channels:
Live Chat via the Customer Portal: https://my.liquidweb.com
Email: [email protected]
Issue Accessing Portal via login.liquidweb.com
Beginn 24. Mai 2026 um 16:47 UTC · 21h 24m
OutageSchwerwiegender Vorfall
Betroffene Komponenten
Management Portal
investigating
We are investigating an issue preventing customers from accessing the portal through login.liquidweb.com. Updates are forthcoming as more information becomes available.
Need help? Chat with us or contact Support for assistance.
We appreciate your patience and understanding as we work to restore portal access. Thank you.
investigating
We are continuing to investigate the issue impacting access to the portal through login.liquidweb.com.
While the site may be loading for some users, our teams are still reviewing the issue and working to confirm full service stability.
Updates will be provided as more information becomes available.
Thank you for your patience while we continue working toward a resolution.
monitoring
Access to the portal through login.liquidweb.com has been restored, and the site is now loading successfully.
Our teams have implemented a fix and are continuing to monitor the service to ensure stability.
We will provide additional updates if any further issues are identified.
Thank you for your patience while we worked to restore access.
resolved
This incident has been resolved.
Security Advisory: Linux Privilege Escalation Vulnerability (CVE-2026-31431)
Beginn 11. Mai 2026 um 22:12 UTC · 25d 23h
OutageSchwerwiegender Vorfall
Betroffene Komponenten
CPanelCloud VPS HostingCloud Dedicated
identified
A recently disclosed Linux vulnerability (CVE-2026-31431), sometimes referred to as “Copy Fail,” affects certain Linux distributions and may allow a local, unprivileged user to escalate privileges under specific conditions. This issue has been classified as high severity.
Status
Our security and operations teams have completed an assessment of our infrastructure and have applied all relevant vendor patches and mitigations to affected systems.
Impact
No evidence of exploitation has been identified within our environment
Systems under our management have been patched or otherwise mitigated
Customer Guidance
Customers managing their own systems or using unmanaged services should ensure they have applied the latest security updates provided by their Linux distribution and review any related vendor advisories.
We will continue monitoring this vulnerability and will provide updates if new information becomes available.
resolved
This incident has been resolved.
Let's Encrypt Service Interruption
Beginn 8. Mai 2026 um 20:56 UTC · 4h 19m
Pending
investigating
We have been made aware of an incident that is affecting Let's Encrypt. The third party SSL provider is currently not issuing SSL certificates as they investigate the issue further.
More information is available at at Let's Encrypts status page here: https://letsencrypt.status.io/
If you have any additional questions please reach out to our support team and we will be happy to assist
monitoring
Let's Encrypt has updated their status post indicating that they are resuming their typical issuance of certificates.
We will continue to monitor to see if there are any changes in their status going forward