CVE-2024-7569: Ivanti Neurons For Itsm
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons for ITSM versions 2023.4 and earlier allows an unauthenticated attacker to obtain the OIDC client secret via debug information.
Affected products
- Ivanti Neurons For Itsm: version 2023.2 only; version 2023.3 only; version 2023.4 only
Published 2024-08-13. Last modified 2026-06-17.