Known Vulnerabilities for Endpoint Manager by Ivanti
Listed below are 10 of the newest known vulnerabilities associated with "Endpoint Manager" by "Ivanti".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73627 json | JupyterLab (pip package 'jupyterlab') versions >=4.1.0,<=4.5.9 and >=4.6.0,<=4.6.1 contain a plugin manager lock-rule enforce... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-73249 json | calibre is an e-book manager. Prior to 9.12.0, the calibre Content Server endpoint POST /book-update-annotations/{library_id}... | Not Provided | 2026-08-11 | 2026-08-12 |
| CVE-2026-68971 json | Apache Airflow's asset materialization endpoint (`POST /api/v2/assets/{asset_id}/materialize`) and the XCom result check on `... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-62361 json | listmonk is a standalone, self-hosted, newsletter and mailing list manager. Prior to 6.2.0, listmonk’s GET /api/subscribers... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-54910 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.4.3-beta, the `subtitlesHandler` endpo... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-54685 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.3.2-beta, the `/api/auth/login` authen... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-50892 json | Incorrect access control in the "Let's Encrypt" certificate download endpoint of Nginx Proxy Manager v2.14.0 allows authentic... | Not Provided | 2026-06-15 | 2026-06-16 |
| CVE-2026-49998 json | Centrifugo is an open-source scalable real-time messaging server. Prior to 6.8.1, Centrifugo dynamic JWKS endpoint verificati... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-49394 json | Frappe is a full-stack web application framework. Prior to 16.19.0, authorization bypass was possible via the update_page end... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-48777 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Versions prior to 1.3.2-stable, 1.4.0-beta and 1.4.1-beta... | Not Provided | 2026-06-16 | 2026-06-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ivanti | Endpoint Manager | 2020.1.1 | |||
| Application | Ivanti | Endpoint Manager | 2020.1 | |||
| Application | Ivanti | Endpoint Manager | 2019.1 | |||
| Application | Ivanti | Endpoint Manager | 2018.3 | |||
| Application | Ivanti | Endpoint Manager | 2018.1 | |||
| Application | Ivanti | Endpoint Manager | 2017.3 | |||
| Application | Ivanti | Endpoint Manager | 2017.1 | |||
| Application | Ivanti | Endpoint Manager | 2016.4 |