Vulnerability Bulletins

CVE-2026-18851

   
Affected software IVANTI
 
Missing authorization in Ivanti Endpoint Manager Mobile before version 12.10.0.0, 12.9.0.2, and 12.8.0.4 allows a remote authenticated attacker to escalate their privileges to admin.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-18851