Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

WHMCS CVE Patch (CVE-2026-29204)

2»

Comments

  • rdesrdes Member

    7.0.3 not seem to be affected by this bug according to https://help.whmcs.com/m/125386/l/2073908-cve-2026-29204

    Affected versions include:

    All WHMCS 9.x builds prior to 9.0.4.
    All WHMCS 8.x builds prior to 8.13.3.
    All WHMCS 7.x builds after 7.4.0.

  • BinksBinks Member
    edited May 13

    Patch released early

    Email received:

    WHMCS 9.0.4 and WHMCS 8.13.3 are now available as important maintenance releases for the WHMCS 9.0 and 8.13 series.

    These releases address a security vulnerability, CVE-2026-29204, which affects WHMCS 7.4 and later. We strongly recommend that all self-managed WHMCS customers update to the latest available version for their release series without delay.

    Information relating to this CVE was disclosed earlier than intended due to a submission issue on our side. As a result, we accelerated the publication of these releases so customers could take the recommended action immediately.

    https://help.whmcs.com/m/125386/l/2073908-cve-2026-29204

    Thanked by 1mustafamw3
  • layer7layer7 Member, Host Rep, LIR

    Hi,

    .... worked perfectly well....

    tried to update our 8.x to latest 8.13

    But whmcs update code decided to better install 9.0.4 :-)

    And thinks now having 9.0.4 will mean having 8.13.3 as latest version <3

    You are running the latest version
    Your Version
    9.0.4General Release9.0.4-release.1
    
    Latest Version
    8.13.3General Release8.13.3-release.1
    
    Thanked by 3rpqu oloke Nekopara
  • rdesrdes Member

    So they did just as well with the patch as they did with revealing the CVE details too early. Time to rise prices again.

  • BinksBinks Member

    I have updated and ours shows correct 8.13.2 to 8.13.3

  • plumbergplumberg Veteran, Megathread Squad

    @layer7 said:
    Hi,

    .... worked perfectly well....

    tried to update our 8.x to latest 8.13

    But whmcs update code decided to better install 9.0.4 :-)

    And thinks now having 9.0.4 will mean having 8.13.3 as latest version <3

    You are running the latest version
    Your Version
    9.0.4General Release9.0.4-release.1
    
    Latest Version
    8.13.3General Release8.13.3-release.1
    

    WHMCS dev team - thank you @layer7 for testing our patch

    Thanked by 1OhJohn
  • rpqurpqu Member

    @layer7 said:
    Hi,

    .... worked perfectly well....

    tried to update our 8.x to latest 8.13

    But whmcs update code decided to better install 9.0.4 :-)

    And thinks now having 9.0.4 will mean having 8.13.3 as latest version <3

    Incomplete as usual

  • FlorinMarianFlorinMarian Member, Host Rep

    At least a few hours later, their updater works correctly as I just updated without facing any issue.

  • any POC out?

  • @layer7 said:
    Hi,

    .... worked perfectly well....

    tried to update our 8.x to latest 8.13

    But whmcs update code decided to better install 9.0.4 :-)

    And thinks now having 9.0.4 will mean having 8.13.3 as latest version <3

    You are running the latest version
    Your Version
    9.0.4General Release9.0.4-release.1
    
    Latest Version
    8.13.3General Release8.13.3-release.1
    

    Sounds like you selected the "Stable" update channel when you wanted to use "Current" to stay on the same major version.

    Thanked by 1layer7
Sign In or Register to comment.