Home / Jun 13, 2026 / Story
0
#6 BleepingComputer general June 12, 2026 at 08:26 UTC

CISA orders feds to patch actively exploited Ivanti flaw by Sunday

By Sergiu Gatlan

AI Summary

CISA issued Binding Operational Directive BOD 26-04, ordering federal agencies to patch an actively exploited Ivanti Sentry OS command injection vulnerability within three days of the directive — by Sunday. Exploitation attempts were already hitting honeypots within 24 hours of public disclosure, indicating rapid weaponization. The vulnerability allows unauthenticated root-level code execution, making it a critical remediation priority for all Ivanti Sentry deployments.

Relevance score: 84.0/100

# More from June 13