Ivanti disclosed two critical vulnerabilities in Sentry, a mobile gateway. CVE-2026-10520 carries a 10.0 severity, allowing remote unauthenticated root-level code execution. CVE-2026-10523 is a 9.9 authentication bypass enabling admin account creation. Customers should upgrade to versions 10.5.2 or 10.6.2 immediately.
Tap to vote and see what everyone thinks.