CyberRota Analysis
AI-GeneratedIvanti Neurons for ITSM versions prior to 2026.2 are vulnerable to a critical deserialization of untrusted data flaw, enabling remote unauthenticated attackers to execute arbitrary code on the server. This vulnerability poses a significant risk to the integrity and confidentiality of affected systems. Organizations using this software should prioritize immediate patching to mitigate potential exploitation.
CVE
CVE-2026-12744
Severity
CRITICAL
CVSS
9.8
EPSS
2.17%
Ivanti
Original NVD Description
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.