Plesk, can you let us know the timeline for the release of the patches or updates for BIND9?
The Dutch National Cyber Security Centre (and security agencies worldwide) are urging immediate patching of BIND 9 due to a critical DNS cache poisoning vulnerability known as CVE-2025-40778...
and just now I also noticed that no information related to Malware is displayed to Customers anywhere....
A customer needs to open the Imunify module to see what's going on....
The new ImunifyAV+ does not notify and does not display any information to customers o_O.
@bgptbg Plesk was able to reproduce it in their test environment on a newly created domain. Their development team has started an investigation which takes 2-3 business days.
We are seeing the same bug on all our updated Plesk systems.
Workaround:
create a new dkim key with name selector1 (or something else)
activate and save
create a new dkim key with name default
activate and save
delete dkim key selector1
Did you check the support page? There is a tab for CentOS 7.
https://support.plesk.com/hc/en-us/articles/32537488344343-CVE-2025-49113-Vulnerability-in-Roundcube-on-Plesk-servers
Roundcube has a new vulnerability: CVE-2025-49113
Aleksander Machniak has released a secutity update: Roundcube Webmail 1.6.11
When can we expect this fix to be included in Plesk?
Awesome! That is great to learn.
The issue must be related to smartUpdateCrawlerPagesLimit , because the sitemap is working fine.
Thank you! Problem solved!
Good afternoon,
I really like the Smart Update within WordPress Toolkit. I have a question in regards to the 100 pages that are checked:
- Test Run Summary
-- 100 pages checked
1: website.nl/blog
2: website.nl/en/blog/this-is-an-example
3: website.nl/en/blog/fast-hosting-drives-conversions...
Hello everyone,
A well known vulnerability scanner reported that our Plesk server (Ubuntu 22, Obsidian 18.0.66 Update #2) is vulnerable for TLS BREACH attacks (cve-2013-3587).
The vulnerability scanner checks if the remote web server has HTTP compression enabled and if it does report the...