Curated Cyber Threat Intelligence

Threat Feed

Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.

scheduleUpdated 2026-07-21 · 02:09 UTC
articleTotal: 606 reports

Filtered Reports

8 / 8 results
Active filter:tag: #ivanti✕ clear
CISA orders federal agencies to patch exploited Ivanti Sentry flawcriticalbug_reportVulnerability
bug_reportVulnerability

CISA orders federal agencies to patch exploited Ivanti Sentry flaw

Ivanti Sentry (specific versions not disclosed in summary). U.S. federal agencies under BOD 26-04 mandate, but all Ivanti Sentry deployments at risk given active exploitation.

Ivanti06:26 UTC
Ivanti Sentry RCE flaw under active exploitation, root access possiblecriticalbug_reportVulnerability
bug_reportVulnerability

Ivanti Sentry RCE flaw under active exploitation, root access possible

Ivanti Sentry (formerly MobileIron Sentry) - Internet-exposed secure mobile gateways. Specific vulnerable versions not provided in summary, but patch recently released.

Ivanti04:20 UTC
Ivanti Sentry critical RCE and auth bypass require immediate patchingcriticalbug_reportVulnerability
bug_reportVulnerability

Ivanti Sentry critical RCE and auth bypass require immediate patching

Ivanti Sentry (specific versions not disclosed in summary). Vulnerabilities enable root-level remote code execution and authentication bypass. CVE identifiers not yet assigned or published.

Ivanti13:13 UTC
Fortinet FortiSandbox command injection flaw enables remote code executioncriticalbug_reportVulnerability
bug_reportVulnerability

Fortinet FortiSandbox command injection flaw enables remote code execution

Fortinet FortiSandbox products affected by CVE-2026-25089 (CVSS 9.1). Specific vulnerable versions not disclosed in provided data. Ivanti and SAP also released patches for separate critical vulnerabilities.

CVE-2026-2508913:10 UTC
Ivanti Sentry critical RCE flaws allow unauthenticated remote attackscriticalbug_reportVulnerability
bug_reportVulnerability

Ivanti Sentry critical RCE flaws allow unauthenticated remote attacks

Ivanti Sentry products (specific versions not provided). Two critical vulnerabilities enable unauthenticated remote code execution on exposed devices.

Ivanti11:55 UTC
Ivanti Sentry critical RCE allows unauthenticated root code executioncriticalbug_reportVulnerability
bug_reportVulnerability

Ivanti Sentry critical RCE allows unauthenticated root code execution

Ivanti Sentry secure mobile gateway solution. Specific affected versions not disclosed. Two critical vulnerabilities patched, including one maximum-severity (likely CVSS 10.0) remote code execution flaw enabling unauthenticated attackers to execute a…

Ivanti04:26 UTC
Ivanti releases security updates for multiple productshighbug_reportVulnerability
bug_reportVulnerability

Ivanti releases security updates for multiple products

Multiple Ivanti products affected. Specific product names, versions, and CVE identifiers not disclosed in available information. High severity rating indicates significant security risk.

Ivanti07:55 UTC
Ivanti EPMM critical RCE flaws under limited exploitationcriticalbug_reportVulnerability
bug_reportVulnerability

Ivanti EPMM critical RCE flaws under limited exploitation

Ivanti Endpoint Manager Mobile (EPMM) products. Specific affected versions not provided in advisory summary. Two critical vulnerabilities enabling unauthenticated remote code execution.

Ivanti09:09 UTC