Ivanti Policy Secure

3 known vulnerabilities in Ivanti Policy Secure, 2 critical, 3 actively exploited, with patch priority, exploit likelihood and the news covering them.

Recently exploited

  • CVE-2025-22457 CVSS 9.8 critical · actively exploited Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
  • CVE-2025-0282 CVSS 9.0 critical · actively exploited Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
  • CVE-2024-21893 CVSS 8.2 high · actively exploited Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability

Latest vulnerabilities

  • CVE-2025-22457 CVSS 9.8 critical · actively exploited Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
  • CVE-2025-0282 CVSS 9.0 critical · actively exploited Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
  • CVE-2024-21893 CVSS 8.2 high · actively exploited Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability