Ivanti Security Advisories
ivanti-psirt · A · active
https://www.ivanti.com/blog/topics/security-advisory
Added 2026-09-29: first-party advisories for Connect Secure / Policy Secure / EPMM / Neurons (edge and MDM lines with repeated exploitation). RECIPE: `feed https://www.ivanti.com/blog/topics/security-advisory/rss 10` (direct; monthly roundups, newest 2026-09-08 at probe), then drill the linked per-product advisory on forums.ivanti.com. Out-of-band advisories may be posted only on the forum; KEV, EUVD and CERT relays cover those. (2026-09-29 operator-directed setup review)
Cited in 4 entries
Citation cadence
Citation days per ISO week (19 weeks of coverage span, total 3).
- Ivanti September 2026 Security Update, ten CVEs across Neurons for ITSM, Sentry and EPMM, two unauthenticated CVSS 9.8 deserialization RCEs2026-09-11
- CVE-2026-8043 Ivanti Xtraction external file control (CVSS 9.6) plus EPM SQL-injection-to-RCE and vTM admin OS-command injection, May 2026 advisory batch, no ITW2026-05-14
- Ivanti EPMM CVE-2026-5787 → CVE-2026-6973, Pre-Auth Certificate Impersonation Chaining to RCE in Enterprise Mobile Device Management2026-05-08
- CVE-2026-5787 / CVE-2026-6973, Ivanti EPMM pre-auth certificate impersonation → admin RCE (CISA KEV deadline 2026-05-10)2026-05-08