Skip to main content
Security

Ivanti discloses 10 flaws across EPMM, Neurons and Sentry

Ivanti discloses 10 flaws across EPMM, Neurons and Sentry Image: Primary
Ivanti disclosed 10 vulnerabilities affecting Endpoint Manager Mobile, Neurons for ITSM and Sentry on September 8. The Neurons advisories include unauthenticated deserialization flaws that can enable server-side code execution, while other issues require authentication. Ivanti released fixes for affected EPMM and Sentry versions; its cloud Neurons service was patched on August 9. On-premises Neurons customers running versions 2025.2 through 2026.1 need September security patches, while version 2026.2 is scheduled for September 21. Ivanti said it had no evidence of exploitation before disclosure.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from cybersecuritynews.com and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security
Security

Microsoft fixes 974 flaws, including two exploited Windows zero-days

Microsoft released patches for 974 CVEs across its products, including two Windows zero-days reported as exploited in the wild. One is an ALPC heap-buffer-overflow flaw that can let a local attacker escape a low-privilege AppCont...

Security
Security

N-able issues hotfix for N-central zero-day

N-able released an urgent hotfix for CVE-2026-86218, a critical unauthenticated remote-code-execution vulnerability in its N-central endpoint-management platform. The company said the flaw had been exploited as a zero-day and that...

Security
Security

Natural Resources Wales discloses employee diversity-data exposure

Natural Resources Wales disclosed that a spreadsheet containing equality-monitoring and diversity information for former and current employees was inadvertently published online and later removed. The affected group covers people...

Security Products
Security Products

Liquid sidechain pauses after reported 4,000 BTC withdrawal

Liquid says purported white-hat hackers withdrew about 4,000 BTC, valued in its statement at roughly $320 million, from the Liquid Federation wallet. The company says the funds left through the SideSwap Peg-out Authorization Key, ...

Security
Security

Vishing campaign targets executives for Microsoft 365 data theft

Arctic Wolf has described a data-theft and extortion cluster targeting Microsoft 365 and other SaaS accounts through fraudulent IT-help-desk calls, adversary-in-the-middle login pages and residential-proxy session replay. The acti...