How to disable annoying Imunify::Generic emails in WHM 108?

Benjamin D.

Well-Known Member
Jan 28, 2016
218
34
78
Canada
cPanel Access Level
Root Administrator
Alright, I can understand the benefits of scanning with Imunify once in a while, but the relentless emails about hundreds of Wordpress plugins that are slightly outdated is becoming old quite fast. Look, I understand that the Admin CSS MU plugin was updated last month and that the update literally only adds the flex-direction CSS compatibility, but does that justify my WHM server emailing me every other day about it? It seems that we have a very different definition of what "vulnerable" or "outdated" means. I almost feel harassed by my WHM server nowadays compared to a few years ago and I don't ever recall having issues over the last decade when a CSS plugin had not been updated FOR A MONTH on any Wordpress site that this server has been hosting.

TLDR; HOW CAN WE DISABLE THIS PLEASE? Instructions at the bottom of the said email lead to nowhere in WHM 108. Here's the email I need deactivated:


Dear Administrator,

This message is to provide you important information regarding web server security. Please note that the following software in your environment is considered to be outdated or vulnerable:

admin-css-mu version 2.7 that is located at /home/someuser/public_html is outdated
The recommended for use version of this software is 2.8

340 more items found.

Please do the following:
  • Option 1: Make sure WordPress administrator(s) responsible install the necessary updates.
  • OR
  • Option 2: Upgrade from ImunifyAV to Imunify360 to cut down the risks that come with outdated software.

If you have any questions, please contact our support team.

All the best,
Imunify360 Security Team

“Imunify::Generic” notifications are currently configured to have an importance of “High”. You can change the importance or disable this type of notification in WHM’s Contact Manager at: https://somewhmserver.com:2087/scripts2/editcontact?event=Application
 
Last edited by a moderator:

Benjamin D.

Well-Known Member
Jan 28, 2016
218
34
78
Canada
cPanel Access Level
Root Administrator
Sorry, I thought it was clear when I wrote "Instructions at the bottom of the said email lead to nowhere in WHM 108." but perhaps it was not. Let me rephrase it: Whenever I click on the link at the bottom of the email, it opens a browser window to WHM and displays nothing about Imunify. Please, take a look at both attached screenshots and if possible, let me know how I can disable that "security" email.

Please don't hesitate to let me know if my question is still unclear.
 

Attachments

Last edited:

ITHKBO

Active Member
Jun 23, 2020
36
35
18
Netherlands
cPanel Access Level
Root Administrator
We used to disable it through: # imunify-antivirus config update '{"ADMIN_CONTACTS": {"enable_icontact_notifications": false}}'

The problem with the UI is that Imunify never got there own alert type so it falls under Generic.
Which is a problem when you have no idea what falls exactly under Generic besides ImunifyAV
 
  • Like
Reactions: Benjamin D.

cPRex

Jurassic Moderator
Staff member
Oct 19, 2014
15,307
2,440
363
cPanel Access Level
Root Administrator
That's odd - you should have an entire page of options there showing all the notification options for the entire server. Is there anything logged to the cPanel error log (/usr/local/cpanel/logs/error_log) when loading that page? If not, we'd like to take a look at this through a ticket if you could submit one.
 

Benjamin D.

Well-Known Member
Jan 28, 2016
218
34
78
Canada
cPanel Access Level
Root Administrator
It's not ideal, but on friday, I've run: imunify-antivirus config update '{"ADMIN_CONTACTS": {"enable_icontact_notifications": false}}'
(sorry, cpanel.net forum is broken and won't let me format as code)

It's been 4 days and I have not received any email from Imunify yet, so that might have fixed it. We'll wait a week just to be sure.