A vulnerability classified as critical has been found in WebPros Plesk up to 18.0.78.4. The affected element is an unknown function of the component XML-RPC API. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2026-58046. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.