CVE List

CVE-2026-1281

Severe 9.8

A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.

Published January 29, 2026.

Affected software

Get alerts for Ivanti Endpoint Manager Mobile

Reference links