Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ivanti

First CVE: May 26, 2016Active for: 10 yearsTotal CVEs: 494
78.5
VTI Score
TOP TARGET

Ivanti develops a focused line of enterprise mobility, endpoint management, and secure remote access platforms that occupy critical positions in corporate IT infrastructure and are widely deployed across business networks. Despite its concentrated product portfolio—anchored by Connect Secure, Avalanche, Endpoint Manager, Policy Secure, and Endpoint Manager Mobile—the vendor carries a large vulnerability footprint and ranks among the most prominent in the landscape, reflecting the complexity and attack surface inherent to these privileged management and access-control systems. Vulnerabilities affecting Ivanti skew toward serious outcomes and have a moderate tendency toward both confirmed in-the-wild exploitation and public exploit availability, consistent with the high value of compromising endpoint and access-control infrastructure. The exposure recurs through SQL injection, path traversal, out-of-bounds write, and cross-site scripting weaknesses, reflecting the web-facing and data-handling demands of remote access and management appliances. Defenders should prioritize inventory and patching of these products, particularly internet-reachable instances; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
494
Total CVEs
More Total CVEs than 100% of tracked vendors
1.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 74% of tracked vendors
7.7
Avg CVSS Score
Higher Avg CVSS Score than 73% of tracked vendors
7.1%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Ivanti over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 26, 2016
10 years ago
Most Recent CVE
Jun 9, 2026
45 days ago

Self-Reporting Analysis

Of all the CVEs published by Ivanti as a CNA, 96.9% affect products that Ivanti develops as a vendor.

96.9%
Self-reported: 187 (96.9%)
Third-party: 6 (3.1%)

Of all the CVEs published that affect products developed by Ivanti, 37.9% are self-published by Ivanti as a CNA.

37.9%
62.1%
Self-published: 187 (37.9%)
Other CNAs: 307 (62.1%)

Products(40 total)

Top CVEs

Signals from CVEs in this vendor scope (494 CVEs).

494 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-10520CRITICAL
An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execu
Jun 9, 202610.099YESYES
CVE-2025-22457CRITICAL
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows
Apr 3, 20259.899YESYES
CVE-2021-44529CRITICAL
A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).
Dec 8, 20219.899YESYES
CVE-2019-11510CRITICAL
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthenticated remote attacker can send a specially crafted URI to p
May 8, 201910.099YESYES
CVE-2026-1340CRITICAL
A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
Jan 29, 20269.898YESYES
CVE-2025-4427HIGH
An authentication bypass in the API component of Ivanti Endpoint Manager Mobile 12.5.0.0 and prior allows attackers to access protected resources without proper credentials via the
May 13, 20257.598YESYES
CVE-2025-0282CRITICAL
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.
Jan 8, 20259.098YESYES
CVE-2024-8963CRITICAL
Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality.
Sep 19, 20249.198YESYES
CVE-2024-7593CRITICAL
Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker to bypass authentication of the
Aug 13, 20249.898YESYES
CVE-2024-29824HIGH
An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated attacker within the same network to execute arbitrary code.
May 31, 20248.898YESYES
View all 494 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products494 CVEs
20%
59%
20%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local96 (19.4%)
Network381 (77.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network17 (3.4%)
Attack Complexity
Low476 (96.4%)
High18 (3.6%)
Unknown0 (0.0%)
User Interaction
None448 (90.7%)
Unknown0 (0.0%)
Required46 (9.3%)
Privileges Required
Low168 (34.0%)
High107 (21.7%)
None219 (44.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (494 CVEs).

CISA KEV
35 CVEs
7.1% of CVEs· 100th percentile
Metasploit
19 CVEs
3.8% of CVEs· 98th percentile
Nuclei
24 CVEs
4.9% of CVEs· 96th percentile
ExploitDB
6 CVEs
1.2% of CVEs· 74th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ivanti.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ivanti — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ivanti's Products

View all 6 CNAs →

Top CWEs