Posting Date: 2026/05/15

【Vulnerability Alert】High-Risk Security Vulnerability in Ivanti Endpoint Manager (CVE-2026-8111)

  • Subject: 【Vulnerability Alert】High-Risk Security Vulnerability in Ivanti Endpoint Manager (CVE-2026-8111)


  • Description:
    • Forwarded from Taiwan Computer Emergency Response Team / Coordination Center Security Advisory TWCERTCC-200-202605-00000006
    • Ivanti Endpoint Manager (EPM) is a system specifically designed for device management, providing management and protection for Windows, macOS, and Linux devices.
    • Ivanti recently released a critical security vulnerability advisory (CVE-2026-8111, CVSS: 8.8). This is an SQL injection vulnerability that allows authenticated remote attackers to achieve remote code execution.
  • Affected Platforms:
    • Ivanti Endpoint Manager versions prior to 2024 SU6 (not inclusive)
  • Recommended Actions:
    • Please update to Ivanti Endpoint Manager 2024 SU6 (inclusive) or later versions

Computer and Communication Center
Network Systems Division