Incorrect SSL certificate presented

I have a server running OLS with CyberPanel. Following is the setup: for the server with OLS)

All domains have their own SSL through LetsEncrypt.
However, when I run the following command, the output returns the CN name as
openssl s_client -connect -showcerts
This happens for all 3 domains, which return certificate for rootdomain.

I have cross-checked multiple times, and each VirtualHost has SSL path pointed to the correct certificate in respective directories under '/etc/letsencrypt/live/'.

All this does not cause a problem in the browser, however, Cloudfront refuses to connect due to this issue, and throws a 502 error.

From what I know, OLS does support SNI, so what am I missing?