Time-based 2FA codes depend on accurate time. If cPanel reports that a current code is invalid:
- Wait for a new code and enter it promptly.
- Confirm the correct cPanel account is selected in the authenticator app.
- Make sure the phone or authenticator device uses automatic date and time synchronization.
- If another authenticated cPanel session remains available, review or reconfigure the 2FA setup from that session if appropriate.
Repeatedly entering expired codes will not resolve a time-synchronization problem.