A critical vulnerability (CVE-2026-9614) has been identified in the Ivanti IT Service Management platform, scoring 8.8 on the CVSS scale, allowing unauthorized administrative access. The issue impacts both cloud and on-premise systems, with urgent updates available. SaaS environments have been automatically patched, but on-prem users must update manually to version 2025.4 Patch 1 or later to secure their systems. Administrators are urged to check their software versions immediately and patch as necessary to prevent exploitation.
High-Severity Ivanti ITSM Vulnerability Exposes IT Systems
CyberSIXT Evidence Panel
Article by CyberSIXT