Ivanti Product Security Update Recommendations

Ivanti Product Security Update Recommendations

Overview

Security updates have been released to address vulnerabilities in Ivanti products. this advisory addresses vulnerabilities affecting Ivanti Sentry.

Affected Products

  • Ivanti Sentry version 10.5.1 and earlier.
  • Ivanti Sentry version 10.6.1 and earlier.
  • Ivanti Sentry version 10.7.0 and earlier.

Resolved Vulnerabilities

  • CVE-2026-10520: OS command injection vulnerability in Ivanti Sentry, which could allow a threat actor to cause arbitrary command execution.
  • CVE-2026-10523: Authentication bypass (a vulnerability that allows normal authentication procedures to be skipped) vulnerability in Ivanti Sentry.

Patch Information

vulnerability patches have been made available in the latest update. users of affected products should follow the instructions on the reference site to update to the following versions

  • Ivanti Sentry 10.5.2.
  • Ivanti Sentry 10.6.2.
  • Ivanti Sentry 10.7.1.

Note

  • Security Advisory Ivanti Sentry (CVE-2026-10520, CVE-2026-10523).