logo

Ivanti customers confront yet another actively exploited zero-day

ID: 1b071bb4-c9f9-5d7c-8a94-cee0df862de8

STIX ID: report--1b071bb4-c9f9-5d7c-8a94-cee0df862de8

Feed Name: CyberScoop

Threat Score
70/100

Date Published: 2026-05-07

Date Updated: 2026-05-07

Author: Matt Kapko

...
...

Ivanti disclosed and patched a zero-day (CVE-2026-6973) in Endpoint Manager Mobile that allows authenticated administrators to run remote code and has been observed with very limited exploitation; Ivanti released fixes for this and four additional high-severity EPMM flaws while CISA added the zero-day to its known exploited vulnerabilities catalog. The report notes prior, more widely exploited unauthenticated EPMM vulnerabilities (CVE-2026-1281 and CVE-2026-1340) that impacted nearly 100 victims and highlights Ivanti's ongoing disclosure, patching, and security-process efforts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.