CVE-2026-8043 – Ivanti Xtraction

CVSS 9.6 CRITICAL

“A single exposed weakness can open the door wide enough for a full system compromise.”

Ivanti has released a patch for a critical vulnerability in Xtraction tracked as CVE-2026-8043. This issue carries a CVSS score of 9.6, which is Critical severity. The vulnerability poses a serious risk to organizations using the platform, potentially allowing attackers to gain significant control over affected systems if left unpatched.

The update addresses the root cause and closes the attack path. There is no verified evidence of active exploitation or public proof-of-concept tied to this vulnerability at this time.

Key Details

Affected Product
Ivanti Xtraction
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
CWE Classification
CWE-73
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.