CyberRota Analysis
AI-GeneratedIvanti Neurons for ITSM versions prior to 2026.2 are vulnerable to a critical deserialization of untrusted data flaw, enabling remote unauthenticated attackers to execute arbitrary code on the server. Organizations using this software should prioritize patching to mitigate the risk of unauthorized access and potential system compromise. Immediate action is recommended for all affected users to safeguard their environments.
CVE
CVE-2026-12745
Severity
CRITICAL
CVSS
9.8
EPSS
2.09%
Ivanti
Original NVD Description
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.