Plesk · Plesk For Linux · CVE-2026-67394
**Name of the Vulnerable Software and Affected Versions**
Plesk for Linux versions 18.0.34 through 18.0.79.8
**Description**
A local privilege escalation issue exists due to OS command injection. This allows a customer or reseller with shell access, or the ability to modify their own shell access, to elevate their privileges to the root account on the hosting server.
**Recommendations**
Update to version 18.0.79.9 or 18.0.80.5.