Investigating - A high-severity reflected XSS vulnerability, CVE-2026-64638, has been identified in the WordPress login interface. Exploitation requires a victim to visit a specially crafted URL and, under specific conditions, could potentially lead to PHP code execution.

Impacted versions:
WordPress 4.7 – 7.0.2 (every release on every branch)
WordPress 4.6 and earlier — end of life, no patch available

Fixed versions:
WordPress 7.0.3
WordPress 6.9.6
WordPress 6.8.7
Equivalent minor releases on every remaining supported branch back to 4.7


Recommended Action
Customers are strongly encouraged to update WordPress core and ensure automatic security updates are enabled where appropriate. Since exploitation requires user interaction, customers should also remain vigilant against phishing attempts and avoid clicking suspicious or unsolicited links.
Customers with automatic security updates enabled should receive the applicable update automatically; however, we recommend verifying the currently running WordPress version.
There is currently no reported evidence of widespread exploitation in the wild. We will continue to monitor the situation and provide further updates if required.

If you need assistance or have any concerns, please contact our Support team.

Aug 08, 2026 - 09:27 EDT
API (example) Operational
90 days ago
100.0 % uptime
Today
Management Portal (example) Operational
90 days ago
100.0 % uptime
Today
API Operational
DNS Operational
Cloud Dedicated Operational
Cloud VPS Hosting Operational
CPanel Operational
InterWorx Operational
Plesk Operational
Object Storage Operational
VMware Cloud Operational
VMware Private Cloud Operational
Business Email Operational
Management Portal Operational
Load Balancers Operational
Cloud Load Balancers Operational
Shared Load Balancers - DC2 Operational
Shared Load Balancers - DC3 Operational
Shared Load Balancers - DC4 Operational
Shared Load Balancers - DC5 Operational
Network Operational
LAN Network Operational
PHX Network Operational
AMS Network Operational
Data Centers Operational
DC2 - LAN Operational
DC3 - LAN Operational
DC4 - PHX Operational
EU - AMS Operational
Support Services Operational
Chat Operational
Case Operational
Phone Operational
Operational
Degraded Performance
Partial Outage
Major Outage
Maintenance
Major outage
Partial outage
No downtime recorded on this day.
No data exists for this day.
had a major outage.
had a partial outage.

Scheduled Maintenance

Critical Network Infrastructure Upgrade – Capacity Expansion Aug 12, 2026 09:30-12:30 EDT

We are performing critical network infrastructure upgrades to significantly improve network stability and reliability. This work involves upgrading the DWDM (Dense Wavelength Division Multiplexing) system capacity from 200G to 400G between our data centers and the ATT network.

This maintenance is scheduled to begin Wednesday, August 12, at 9:30 am ET, and is expected to last for 3 hours.

While we typically strive to perform network maintenance outside of business hours, this one will take place inside business hours, due to the specific availability requirements of our third-party vendors.

To maintain operational continuity during this process, multiple layers of redundancy are in place to support these upgrades. While we do not anticipate any service outages, some users may experience brief latency in rare situations as traffic routes adjust. We appreciate your understanding as we complete these necessary performance enhancements.

Posted on Aug 07, 2026 - 12:36 EDT

Aug 11, 2026

Resolved - The issue affecting a subset of our servers in the us-west-1 region has been resolved. Our team has restored service, and the affected servers are operating normally.

We apologize for any disruption this may have caused and appreciate your patience and understanding while we worked to resolve the issue.

Aug 11, 04:31 EDT
Monitoring - Our team has now implemented a fix, and affected servers and services should be operating as expected at this time. We will continue to monitor the situation closely to ensure ongoing stability.

If you have any questions or concerns, please contact us via live chat or case.

Aug 11, 02:40 EDT
Investigating - We are currently investigating an issue affecting a subset of our servers in the us-west-1 region. Our systems engineers have been engaged and are working to restore service as quickly as possible. We appreciate your patience.

If you have any questions or concerns. Please contact us via live chat or case.

Aug 11, 01:56 EDT

Aug 10, 2026

No incidents reported.

Aug 9, 2026

No incidents reported.

Aug 8, 2026

Resolved - This incident has been resolved.
Aug 8, 07:48 EDT
Monitoring - Our Engineers have successfully restored service to the affected servers, and all services are currently operating normally.

The incident is now in a monitoring state. We will continue to watch the environment closely to ensure stability following the restoration of service.

We appreciate your patience throughout this incident and will provide additional updates if there are any significant changes.

If you have any questions or concerns, please feel free to reach out to our support team via Live Chat or by opening a Support Case.

Aug 7, 21:25 EDT
Investigating - Our Engineers are investigating an interruption in service affecting cloudhost-2915341.us-midwest-1.nxcli.net & cloudhost-2915335.us-midwest-1.nxcli.net. We understand the inconvenience this may cause and truly appreciate your patience while we resolve the issue.

If you have any questions or concerns, please feel free to reach out to our support team via Live Chat or by opening a Support Case.

Aug 7, 19:30 EDT

Aug 7, 2026

Resolved - We have observed continued system stability following the resolution of the incident, and no further action is required at this time.

Should you have any questions or require further assistance, please do not hesitate to reach out to our support team.

Thank you for your patience throughout this process.

Aug 7, 08:12 EDT
Monitoring - Our engineers have successfully recovered the impacted Saas hosts in the US-Midwest region.

We are continuing to monitor the environment to ensure stability and will keep this space updated as needed.
Thank you for your time and patience.

Aug 7, 00:44 EDT
Investigating - We have identified service disruption issues on a subset of servers hosting LearnDash and Stellar websites at US-Midwest region. Our engineers are actively engaged and working to restore services as quickly as possible.

We will continue to provide updates here as soon as more information becomes available.

We appreciate your patience and understanding while we work to resolve this issue. If you have any questions or concerns, please don't hesitate to contact us via live chat or by opening a support case.

Aug 6, 23:29 EDT

Aug 6, 2026

Resolved - The security updates have been applied across our fleet.
Aug 6, 09:07 EDT
Identified - Our teams are continuing to deploy the required security updates across affected systems in response to the Januscape Vulnerability (CVE-2026-53359). As part of this remediation, some systems require a controlled reboot to complete the patching process.

Following each reboot, we are validating system availability, service health, and network connectivity. Systems that do not return to service as expected are being actively investigated and restored by our operations teams.

We understand the importance of maintaining availability and are working carefully to complete this remediation while minimizing customer impact. Additional updates will be provided as patching and validation efforts continue.

Jul 13, 13:50 EDT
Investigating - Our team is currently assessing the impact and scope of Januscape Vulnerability (CVE-2026-53359), and its impact on servers in our fleet and the best way to apply patches to our hosting infrastructure.

We will be sending communications to any affected customers as we work to apply the necessary mitigations.

Next Steps:
Teams are currently in review of vulnerability; subsequent status updates will follow.

Jul 9, 10:35 EDT

Aug 5, 2026

No incidents reported.

Aug 4, 2026

Resolved - This incident has been resolved.
Aug 4, 07:51 EDT
Monitoring - Our engineers have successfully recovered the service on the impacted cloudhost.

We are continuing to monitor the environment to ensure stability and will keep this space updated as needed.

Aug 4, 05:23 EDT
Identified - The issue has been identified, and our teams are actively working toward a resolution.

We will provide further updates as more information becomes available. Thank you for your patience.

Aug 4, 04:40 EDT
Investigating - We are currently investigating a service-impacting issue affecting the server cloudhost-1189763.au-south-1.nxcli.net. Our Nexcess Systems Engineering team has been engaged and is actively working to restore service as quickly as possible.

We appreciate your patience and understanding while we work to resolve this issue. If you have any questions or concerns, please don't hesitate to contact us via live chat or by opening a support case.

Aug 4, 01:31 EDT

Aug 3, 2026

Completed - The scheduled maintenance has been completed.
Aug 3, 07:00 EDT
In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.
Aug 3, 04:00 EDT
Scheduled - We will be performing planned maintenance on our core network infrastructure, affecting DC2 (Lansing), DC3 (Lansing), Ashburn POP, and Chicago POP network locations.

Maintenance Window: [Aug 03, 2026, 4:00 AM ET] (Up to 3 hours)

No service outage is expected. Customers may experience brief latency fluctuations (approximately ±20 ms) while network traffic is optimized across redundant paths.

Our engineering team will monitor the maintenance closely throughout the change window.

Jul 31, 13:28 EDT

Aug 2, 2026

No incidents reported.

Aug 1, 2026

No incidents reported.

Jul 31, 2026

Resolved - Service has been restored at this time, and the affected VMware MT-hosted services are operating normally.

Thank you for your patience and understanding while our teams worked to resolve this issue.

Jul 31, 22:07 EDT
Investigating - We are investigating intermittent connectivity and increased latency affecting some services hosted in the VMware MT environment.

Our engineers are actively working to identify the cause and restore normal service as quickly as possible.

We appreciate your patience and understanding while we work to resolve this issue. If you have any questions or concerns, please open a support ticket or contact us via chat.

Jul 31, 21:37 EDT

Jul 30, 2026

Completed - The scheduled maintenance has been completed.
Jul 30, 06:30 EDT
In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.
Jul 30, 02:30 EDT
Scheduled - To keep our platform secure, we're performing scheduled maintenance to renew SSL certificates across internal infrastructure supporting our nxcli.net and related hosting domains. This is routine security upkeep to ensure certificates remain current and continue providing secure, encrypted connections across our platform.

Maintenance window: July 30, 2026, starting at 2:30 AM ET

No customer impact is expected. As a standard precaution during certificate deployment, backend web and mail-related services on affected servers will be briefly restarted to apply the updated certificates. These restarts are typically momentary, lasting only a few seconds per server, and are a normal part of this type of maintenance.

No action is needed on your end. Your sites, email, and hosting services should continue operating normally throughout this window. If you notice anything unexpected during or after this window, our support team is available to help.

You can connect with us through the following channels:

Live Chat: https://portal.liquidweb.com
Email: support@liquidweb.com

Thanks for your continued trust as we keep our platform's security up to date.

Jul 24, 12:32 EDT

Jul 29, 2026

No incidents reported.

Jul 28, 2026

No incidents reported.