Affecting Other - All Shared Hosting Servers
[JULY 23, 2026] We are rolling out tonight Kernel updates to all servers. You may experience 5-10 minutes disruption while the updates roll out. This is scheduled between 11:30 PM EST - 1:30 AM next day.
New critical Kernel vulnerability known as GhostLock have been identified in the Linux Operating System (CVE-2026-43499). No upgrades have been made available yet on the stable branch. There is also no mitigation available to this vulnerability. We are awaiting vendors to release Kernel patch to the production stream in order to update your servers.
Impact:
Vulnerability is considered critical due to the lack of mitigation steps. No maintenance window scheduled at this time but updates will be performed as soon as a tested kernel version is released between 11:30 PM EST – 1:30 AM EST
You may see brief interruption in your web services while servers apply the relevant patches. The update should take less than 30 minutes to apply.
All of the updates performed and mitigated to this date:
Feel free to reach us on support@mediumcube.com
We will continue to monitor vendor advisories and threat intelligence sources closely and will provide additional updates as new information or patches become available.
Thank you for your patience while we work diligently to update and maintain your hosting environment.
Affecting Other - ALL WordPress websites.
We wanted to advise you that a critical 0-day exploit is circulating on the internet that would allow a hacker to attack WordPress site and add rogue admin users. The vulnerability requires immediate patching.
IMPACT
Attacker can compromise a wordpress site and gain administrator access without needing to use any credentials.
Do you have WordPress Site? Try to access: https://YourWebSiteName.com/wp-login.php (replace YourWebSiteName with your own website name). If you get a login page, then you have a WordPress website.
ACTION
Update to the latest WordPress 7.0.2 or 6.9.5 version or 6.8.6 version. Any other versions prior to 6.8 can also be vulnerable to similar or other type of attacks
RESOLUTION
If you are using one of our managed wordpress services, we will take care of rolling out the updates and ensuring your system is secure. However, if you are managing WordPress or website yourself then you must take action. Reach out to our team to discuss how we can help in updating your website and securely manage it.
VERIFICATION
1) Verify your WordPress site is up to date to the latest version. It should either be version 7.0.2 , 6.9.5 or 6.8.6
2) Check in your WordPress Admin area /wp-admin/ if there are any Administrator users that you do not recognize. If you see generic name for administrator then likely your website is already compromised and need to be checked.
ASSISTANCE
If you have a managed wordpress hosting plan (not regular shared hosting plan), then our team will take care of updating, checking and securing your website.
If you do not have a managed plan, then please open a support ticket with our team and we will discuss the details on how we can help upgrade and secure your website service.
For More information:
https://thehackernews.com/2026/07/wordpress-wp2shell-exploitation-grows.html
https://blog.cloudflare.com/wordpress-vulnerabilities/
Feel free to reach us with any questions or concerns
Mediumcube.com Support Team
Mediumcube.com Management Portal https://manage.mediumcube.com/