cPanel before 55.9999.141 allows attackers to bypass a Security Policy by faking static documents (SEC-92).
mitre·CWE-358·Published 2019-08-01