Ivanti, a leading provider of IT security and management solutions, has announced the release of critical updates for its Ivanti Connect Secure (ICS) and Ivanti Policy Secure (IPS) products. Organizations using Ivanti Connect Secure and Policy Secure should prioritize deploying the latest patches to protect their networks and sensitive data. These vulnerabilities affect versions prior to 22.7R2.8 for Ivanti Connect Secure and 22.7R1.5 for Ivanti Policy Secure. Additionally, Ivanti has clarified that no fixes will be backported to the older 9.x versions of Pulse Connect Secure, which reached end-of-support on December 31, 2024. Importantly, cloud-based solutions such as Ivanti Neurons for ZTA and Ivanti Neurons for Secure Access are not affected by these vulnerabilities. For customers concerned about potential compromise, Ivanti notes that no specific indicators of compromise are currently available due to the lack of known public exploits. Ivanti has emphasized that there is no evidence of active exploitation of these vulnerabilities at the time of public disclosure. As of the disclosure date, Ivanti has confirmed that no customers have exploited these vulnerabilities. Ivanti has urged users to update to the latest versions to mitigate risks. This security update underscores the critical need for organizations to maintain up-to-date software to safeguard against evolving cyber threats. Users can access the patches through Ivanti’s download portal, which requires login credentials for security purposes. Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis.
This Cyber News was published on cybersecuritynews.com. Publication date: Tue, 08 Jul 2025 15:45:24 +0000