CVE-2026-10520
ivanti Sentry, standalone sentry
An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execution
- CVSS
- 10
- EPSS
- 99.9% 100.0% percentile
- CISA KEV
- Listed
- Published
- 2026.06.10