logo

CISA Warning: Critical Ivanti EPMM Code Injection Vulnerability Under Active Attack

ID: 8bc43349-e6ec-5c19-a454-c58382cb491a

STIX ID: report--8bc43349-e6ec-5c19-a454-c58382cb491a

Feed Name: securityonline.info

Threat Score
88/100

Date Published: 2026-04-09

Date Updated: 2026-04-23

Author: Ddos

...
...

CISA added a critical, actively exploited code-injection vulnerability (CVE-2026-1340, CVSS 9.8) in Ivanti Endpoint Manager Mobile to its KEV catalog; the flaw allows unauthenticated remote code execution on affected EPMM appliances. Ivanti released RPM security updates and an exploitation-detection RPM to scan for indicators, warns the RPM must be reinstalled after upgrades, and notes a permanent fix in the upcoming 12.8.0.0 release; federal agencies are required to remediate by April 11, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.