A vulnerability labeled as very critical has been found in usmannasir CyberPanel up to 2.4.3. The affected element is an unknown function of the file /root/.ssh/authorized_keys of the component Remote Backup Feature. Such manipulation of the argument remote server address leads to improper authorization.

This vulnerability is documented as CVE-2026-71965. The attack can be executed remotely. There is not any exploit available.

A patch should be applied to remediate this issue.