securityonline.info 6/2/2026, 5:21:15 AM · external

High-Severity Ivanti ITSM Vulnerability Exposes IT Systems

High-Severity Ivanti ITSM Vulnerability Exposes IT Systems
CyberSIXT Evidence Panel
Primary Source hub.ivanti.com
CISA KEV Not in KEV
Patch Patch Status Unknown

A critical vulnerability (CVE-2026-9614) has been identified in the Ivanti IT Service Management platform, scoring 8.8 on the CVSS scale, allowing unauthorized administrative access. The issue impacts both cloud and on-premise systems, with urgent updates available. SaaS environments have been automatically patched, but on-prem users must update manually to version 2025.4 Patch 1 or later to secure their systems. Administrators are urged to check their software versions immediately and patch as necessary to prevent exploitation.

View Primary Source Via securityonline.info

Article by CyberSIXT