No description
  • JavaScript 72.7%
  • Python 10.1%
  • HTML 9.2%
  • CSS 6.1%
  • Shell 1.1%
  • Other 0.8%
Find a file
Repository files (latest commit first)
Filename Latest commit message Latest commit date
CyberPanel 382d5d08a2
Some checks are pending
Test suite / pytest (push) Waiting to run
Revert release-verification gating in upgrade.py
Crashed upgrade.py outright on this box's currently-live plogical/,
which predates releaseVerification.py -- an ImportError before any
upgrade logic ran. No real signed release exists yet to verify
against either. Reverted downloadAndUpgrade to plain clone-in-place;
stageAndVerifyRelease kept but not called, import moved local to it.
2026-08-27 08:07:59 +02:00
.gitea/workflows Improvements 2026-08-24 22:14:08 -05:00
.github Update sync2gitee.yml 2021-11-13 21:20:34 +01:00
.idea bug fix: allowed host issue 2025-09-15 11:26:58 +05:00
ApachController Harden backup, restore, mail, and config handling; remove legacy web terminal 2026-08-22 15:42:51 -05:00
api Improvements 2026-08-24 22:14:08 -05:00
backup Remove CyberMail promo banners, fix dropdown clipping and mail page design 2026-08-23 23:24:57 -05:00
baseTemplate Improvements 2026-08-24 22:14:08 -05:00
cli Move FTP creation, killProcess, and servicesAction into privops 2026-08-24 22:13:40 -05:00
CLManager Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
cloudAPI Migrate website disk/bandwidth stats into privops as website.disk_usage 2026-08-23 11:24:28 -05:00
CLScript Prepare CyberPanel 3.0.0 version compatibility 2026-08-09 14:39:02 +05:30
containerization Improvements 2026-08-24 22:14:08 -05:00
CPScripts Complete Ubuntu 26 installer detection 2026-08-18 01:34:45 +05:30
CyberCP Add opt-in TLS/cookie security settings 2026-08-24 22:17:47 -05:00
databases Fix phpMyAdmin signon writing to the wrong PHP session, drop auto-click 2026-08-23 22:04:46 -05:00
dns Improvements 2026-08-24 22:14:08 -05:00
dockerManager Close root RCE, container escape, and cross-tenant bugs in DNS, FTP, Docker, backup, and mail 2026-08-24 07:53:12 -05:00
docs Improvements 2026-08-24 22:14:08 -05:00
emailDelivery Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
emailMarketing Remove CyberMail promo banners, fix dropdown clipping and mail page design 2026-08-23 23:24:57 -05:00
emailPremium Remove CyberMail promo banners, fix dropdown clipping and mail page design 2026-08-23 23:24:57 -05:00
examplePlugin redesign 2026-08-23 11:51:18 -05:00
filemanager Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
firewall Close root RCE, container escape, and cross-tenant bugs in DNS, FTP, Docker, backup, and mail 2026-08-24 07:53:12 -05:00
ftp Move FTP creation, killProcess, and servicesAction into privops 2026-08-24 22:13:40 -05:00
guides Improvements 2026-08-24 22:14:08 -05:00
highAvailability Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
IncBackups Close root RCE, container escape, and cross-tenant bugs in DNS, FTP, Docker, backup, and mail 2026-08-24 07:53:12 -05:00
install Embed the real release-signing public key in cyberpanel.sh 2026-08-27 00:24:04 -05:00
locale Add Norwegian Bokmål language. 2025-09-08 16:48:38 +02:00
loginSystem Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
mailServer Improvements 2026-08-24 22:14:08 -05:00
managePHP Finish the graphite/amber rebrand across every remaining page 2026-08-23 20:19:18 -05:00
manageServices Finish the graphite/amber rebrand across every remaining page 2026-08-23 20:19:18 -05:00
manageSSL Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
packages Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
plogical Revert release-verification gating in upgrade.py 2026-08-27 08:07:59 +02:00
pluginHolder Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
pluginInstaller Fix SyntaxError in pluginInstaller string construction 2026-01-06 14:30:45 -05:00
postfixSenderPolicy Fix monthly bandwidth for websites 2025-09-12 10:41:11 +02:00
privilegeos-agent Update privilegeos-agent.service's capability comment 2026-08-26 23:24:23 -05:00
privops Add hash-chained audit entries to privops.audit_log 2026-08-24 22:23:09 -05:00
s3Backups Harden backup, restore, mail, and config handling; remove legacy web terminal 2026-08-22 15:42:51 -05:00
scripts Add build_release_manifest.py, the maintainer-side signing tool 2026-08-24 23:39:15 -05:00
serverLogs Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
serverStatus Move FTP creation, killProcess, and servicesAction into privops 2026-08-24 22:13:40 -05:00
skin_customizations Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
static Add angularjs.1.8.3.js and wire up the version 1.8.3 references 2026-08-23 23:48:31 -05:00
support_docs Fix upgrade panel status check 2026-05-19 15:12:44 +05:00
testPlugin Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
tests Make the phpMyAdmin logout test exercise the signed-in path 2026-08-18 16:33:49 +05:30
to-do Add PhpMyAdmin access middleware and session check for user authentication 2025-09-15 01:39:21 +02:00
tools redesign 2026-08-23 11:51:18 -05:00
tuning Finish the graphite/amber rebrand across every remaining page 2026-08-23 20:19:18 -05:00
userManagment Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
webmail Add angularjs.1.8.3.js and wire up the version 1.8.3 references 2026-08-23 23:48:31 -05:00
websiteFunctions Improvements 2026-08-24 22:14:08 -05:00
.DS_Store Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
.env.template bug fix: allowed host issue 2025-09-15 12:07:15 +05:00
.gitignore Add documentation files to .gitignore 2025-11-11 17:20:01 +05:00
AllCPUbuntu.json Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
cert.pem Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
CHANGELOG.md Embed the real release-signing public key in cyberpanel.sh 2026-08-27 00:24:04 -05:00
CONTRIBUTING.md Add contributing guide link to README and improve security notice in SECURITY_INSTALLATION.md 2025-09-13 22:34:03 +02:00
CPCent7repo.json Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
cyberpanel.min.js Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
cyberpanel.sh Embed the real release-signing public key in cyberpanel.sh 2026-08-27 00:24:04 -05:00
cyberpanel_upgrade.sh Fix branding save permission bug and missing cosmetic columns migration 2026-08-24 07:50:20 -05:00
cyberpanel_utility.sh Add Ubuntu 26.04 LTS (Resolute Raccoon) support 2026-07-28 14:58:22 +05:00
cyberpanel_version.py Add privilegeos-agent first slice: ping, service control, kill process 2026-08-26 21:37:38 -05:00
deploy_phpmyadmin_redirect.sh Add PhpMyAdmin access middleware and session check for user authentication 2025-09-15 01:39:21 +02:00
faq.sh Update PHP version references and improve AlmaLinux 9 compatibility 2025-09-15 01:25:52 +02:00
fastapi_ssh_server.py Honor custom SSH ports in Web Terminal 2026-08-10 04:14:43 +05:30
fastapi_ssh_server.service Use portable Web Terminal interpreter path 2026-08-10 03:36:31 +05:30
FetchIP.sh Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
fix_cyberpanel_install.sh Prepare CyberPanel 3.0.0 version compatibility 2026-08-09 14:39:02 +05:30
index.html Add Branding settings (platform name, logo, favicon) and finish CyberPlus->dynamic-name rename 2026-08-23 22:58:28 -05:00
install.sh Add Ubuntu 26.04 LTS (Resolute Raccoon) support 2026-07-28 14:58:22 +05:00
langcomp.sh Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
LICENSE Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
lscpd-0.2.7 Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
lscpd-0.3.1 Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
lscpd.0.4.0 Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
lscpd.aarch64 Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
LSCPD_ARCHITECTURE_MAP.md Improvements 2026-08-24 22:14:08 -05:00
manage.py Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
ModuleDeveloperGuide.pdf Add OpenLiteSpeed Module Developer Guide documentation 2025-10-28 12:39:27 +05:00
OpenLiteSpeed_htaccess_Module_Documentation.md openlitespeed .htaccess module documentation 2025-12-28 22:43:02 +04:00
phpmyadmin.zip Update phpmyadmin to 5.2.3 2026-08-23 23:17:12 -05:00
phpmyadmin_htaccess Add PhpMyAdmin access middleware and session check for user authentication 2025-09-15 01:39:21 +02:00
phpmyadmin_index_redirect.php Add PhpMyAdmin access middleware and session check for user authentication 2025-09-15 01:39:21 +02:00
preUpgrade.sh Point installer and upgrade scripts at this fork's own git server 2026-08-22 16:26:27 -05:00
PRIVILEGE_BOUNDARY_MAP.md Improvements 2026-08-24 22:14:08 -05:00
PRIVILEGEOS_DESIGN.md Improvements 2026-08-24 22:14:08 -05:00
README.md Improvements 2026-08-24 22:14:08 -05:00
requirments-old.txt bug fix: python 3.6 compatibility 2025-10-10 17:59:01 +05:00
requirments.txt Fix pip dependency conflict blocking upgrades 2026-08-27 00:43:32 -05:00
ROADMAP.md Improvements 2026-08-24 22:14:08 -05:00
rollback_phpmyadmin_redirect.sh Add PhpMyAdmin access middleware and session check for user authentication 2025-09-15 01:39:21 +02:00
SECURITY_INSTALLATION.md Remove deprecated files and enhance IP blocking feature 2025-09-16 23:53:53 +02:00
SECURITY_ROADMAP.md Improvements 2026-08-24 22:14:08 -05:00
test_debian13_support.sh Enhance OS compatibility and documentation for CyberPanel 2025-09-15 21:34:39 +02:00
test_firewall_blocking.py Add firewall IP blocking feature and enhance security alerts 2025-09-16 23:24:41 +02:00
ubuntu-requirments.txt Initial commit for v2.4.3 2025-08-01 14:56:30 +05:00
upgrade.sh Remove CSF support as it's being discontinued on August 31, 2025 2025-08-11 15:49:31 +05:00
UPSTREAM_PORT_AUDIT.md Improvements 2026-08-24 22:14:08 -05:00
version.txt Add privilegeos-agent first slice: ping, service control, kill process 2026-08-26 21:37:38 -05:00

🛠️ CyberPlus

A hardened fork of CyberPanel, a web hosting control panel powered by OpenLiteSpeed.

This fork carries a security hardening pass on top of upstream: command injection, SQL injection, IDOR, path traversal, archive extraction, SSRF, and configuration injection fixes across backup/restore, mail, and PHP handling, plus removal of the legacy web terminal. See CHANGELOG.md for the full list of changes made in this fork.

Repo: https://giteahub.com/panel/cyberplus


🔧 Features & Services

  • 🔐 Different User Access Levels (via ACLs).
  • 🌌 Auto SSL for secure websites.
  • 💻 FTP Server for file transfers.
  • 🕒 Light-weight DNS Server (PowerDNS).
  • 🔐 phpMyAdmin to manage databases (MariaDB).
  • 📧 Email Support (SnappyMail).
  • 🕌 File Manager for quick file access.
  • 🌐 PHP Management made easy.
  • 🔒 Firewall (FirewallD & ConfigServer Firewall Integration).
  • 📀 One-click Backups and Restores.
  • 🐳 Docker Management with command execution capabilities.
  • 🤖 One-click applications — n8n and Hermes Agent on their own domain with SSL.
  • 🤖 AI-Powered Security Scanner for enhanced protection.
  • 📊 Monthly Bandwidth Reset - Automatic bandwidth usage reset (Fixed in latest version).

📖 Documentation & Guides

CyberPanel comes with comprehensive documentation and step-by-step guides:


🔢 Supported PHP Versions

CyberPanel supports a wide range of PHP versions across different operating systems:

☑️ Currently Supported PHP Versions

  • PHP 8.5 - Latest stable version (EOL: Dec 2028)
  • PHP 8.4 - Stable version (EOL: Dec 2027)
  • PHP 8.3 - Stable version (EOL: Dec 2027)
  • PHP 8.2 - Stable version (EOL: Dec 2026)
  • PHP 8.1 - Stable version (EOL: Dec 2025)
  • PHP 8.0 - Legacy support (EOL: Nov 2023)
  • PHP 7.4 - Legacy support (EOL: Nov 2022)

🔧 Third-Party PHP Add-ons

For additional PHP versions or specific requirements, you can install third-party packages:

Ubuntu/Debian

  • Ondrej's PPA: Provides PHP 5.6 to 8.5
  • Sury's PPA: Alternative repository with latest PHP versions

RHEL-based Systems (AlmaLinux, RockyLinux, CentOS, RHEL)

  • Remi Repository: Comprehensive PHP package collection
  • EPEL Repository: Additional packages for enterprise Linux

CloudLinux

  • CloudLinux PHP Selector: Built-in tool for managing multiple PHP versions
  • Remi Repository: Additional PHP versions and extensions

Note

: Third-party repositories may provide additional PHP versions beyond what's available in default repositories. Always verify compatibility with your specific use case.


🌐 Supported Operating Systems

CyberPanel runs on x86_64 architecture and supports the following operating systems:

Currently Supported

  • Ubuntu 24.04.3 - Supported until April 2029 NEW!
  • Ubuntu 22.04 - Supported until April 2027
  • Ubuntu 20.04 - Supported until April 2025
  • AlmaLinux 10 - Supported until May 2030 NEW!
  • AlmaLinux 9 - Supported until May 2032
  • AlmaLinux 8 - Supported until May 2029
  • RockyLinux 9 - Supported until May 2032
  • RockyLinux 8 - Supported until May 2029
  • RHEL 9 - Supported until May 2032
  • RHEL 8 - Supported until May 2029
  • CloudLinux 8 - Supported until May 2029
  • CentOS 9 - Supported until May 2027

🔧 Third-Party OS Support

Additional operating systems may be supported through third-party repositories or community efforts:

  • Debian - May work with Ubuntu-compatible packages
  • openEuler - Community-supported with limited testing
  • Other RHEL derivatives - May work with AlmaLinux/RockyLinux packages

Note

: For unsupported operating systems, compatibility is not guaranteed. Always test in a non-production environment first.


⚙️ Installation Instructions

Install CyberPlus on a fresh server by cloning this repo and running its installer directly:

git clone https://giteahub.com/panel/cyberplus.git
cd cyberplus
bash cyberpanel.sh

📊 Upgrading CyberPlus

Upgrade your CyberPlus installation using:

sh <(curl https://giteahub.com/panel/cyberplus/raw/branch/stable/preUpgrade.sh || wget -O - https://giteahub.com/panel/cyberplus/raw/branch/stable/preUpgrade.sh)

🆕 Recent Updates & Fixes

Bandwidth Reset Issue Fixed (January 2025)

  • Issue: Monthly bandwidth usage was not resetting, causing cumulative values to grow indefinitely
  • Solution: Implemented automatic monthly bandwidth reset for all websites and child domains
  • Affected OS: All supported operating systems (Ubuntu, AlmaLinux, RockyLinux, RHEL, CloudLinux, CentOS)
  • Manual Reset: Use /usr/local/CyberCP/scripts/reset_bandwidth.sh for immediate reset
  • Documentation: See Bandwidth Reset Fix Guide

New Operating System Support Added (January 2025)

  • Ubuntu 24.04.3: Full compatibility with latest Ubuntu LTS
  • AlmaLinux 10: Full compatibility with latest AlmaLinux release
  • Long-term Support: Both supported until 2029-2030

📚 Resources

CyberPlus (this fork)

Upstream CyberPanel

General panel usage docs and community support are still upstream's, since the underlying features are unchanged:

📖 Quick Start Guides

Feature Guide Description
🐳 Docker Command Execution Execute commands in containers
📧 Email Mautic Setup Email marketing platform
📊 Bandwidth Reset Fix Guide Fix bandwidth reset issues
📚 All Complete Index Browse all available guides

🧪 Testing

CyberPanel includes an OLS feature test suite with 128 tests covering all custom OpenLiteSpeed features.

Running Tests

# On the target server, set up test data (once):
bash tests/ols_test_setup.sh

# Run the full 128-test suite:
bash tests/ols_feature_tests.sh

Test Coverage

Phase Tests Coverage
Phase 1: Live Environment 56 Binary integrity, CyberPanel module, Auto-SSL, LE certificates, SSL listener auto-mapping, cert serving, HTTPS/HTTP, .htaccess processing, VHost config, origin headers, PHP config
Phase 2: ReadApacheConf 72 Include/IncludeOptional, global tuning, listener creation, ProxyPass, IfModule, VHost creation, SSL dedup, Directory/Location blocks, PHP version detection, ScriptAlias, HTTP/HTTPS, process health, graceful restart

🔧 Troubleshooting

Common Issues & Solutions

Bandwidth Not Resetting Monthly

  • Issue: Bandwidth usage shows cumulative values instead of monthly usage
  • Solution: Run the bandwidth reset script: /usr/local/CyberCP/scripts/reset_bandwidth.sh
  • Prevention: Ensure monthly cron job is running: 0 0 1 * * /usr/local/CyberCP/bin/python /usr/local/CyberCP/postfixSenderPolicy/client.py monthlyCleanup

General Support

  • Check logs: /usr/local/lscp/logs/error.log
  • Verify cron jobs: crontab -l
  • Test manual reset: Use provided scripts in /usr/local/CyberCP/scripts/