CVE-2024-7569: Ivanti Neurons For Itsm

Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.

An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons for ITSM versions 2023.4 and earlier allows an unauthenticated attacker to obtain the OIDC client secret via debug information.

Affected products

  • Ivanti Neurons For Itsm: version 2023.2 only; version 2023.3 only; version 2023.4 only

Published 2024-08-13. Last modified 2026-06-17.