logo

Security alert: Ivanti zero-day vulnerability

ID: ec37ece7-a1a7-5f38-85a8-3a3592ee8609

STIX ID: report--ec37ece7-a1a7-5f38-85a8-3a3592ee8609

Feed Name: Expel Blog

Threat Score
88/100

Date Published: 2025-01-08

Date Updated: 2026-04-27

Author: Aaron Walton

...
...

Ivanti disclosed a critical zero-day (CVE-2025-0282, CVSS 9.0) impacting Ivanti Connect Secure, Policy Secure, and Neurons for ZTA Gateways that allows unauthenticated remote code execution and is being actively exploited; Ivanti has released patches and customers are advised to apply them immediately while monitoring for signs of compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.