SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-12745

CRITICAL · CVSS 9.8 EPSS 2.09%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Ivanti Neurons for ITSM versions prior to 2026.2 are vulnerable to a critical deserialization of untrusted data flaw, enabling remote unauthenticated attackers to execute arbitrary code on the server. Organizations using this software should prioritize patching to mitigate the risk of unauthorized access and potential system compromise. Immediate action is recommended for all affected users to safeguard their environments.

CVE
CVE-2026-12745
Severity
CRITICAL
CVSS
9.8
EPSS
2.09%
Ivanti

Original NVD Description

A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.