[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fmWorULzZvfwN4wcnSRinhzgwyP-4XeELGiZalaYPZgI":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":17,"created_at":18,"published_at":19,"article":20,"tags":24,"podcasts":37},"24303b4f-f1b8-4891-b5d6-c0bd93199103","cisa-adds-actively-exploited-ivanti-epmm-vulnerability-to-kev-catalog","9642ed6c-887e-4ceb-b192-69d31d720ccb","CISA Adds Actively Exploited Ivanti EPMM Vulnerability to KEV Catalog","CVE-2026-1340, a code injection vulnerability in Ivanti Endpoint Manager Mobile (EPMM), has been added to CISA's Known Exploited Vulnerabilities catalog due to active exploitation in the wild. This vulnerability represents a critical security gap that attackers are already leveraging against organizations, making immediate remediation essential. The inclusion in the KEV catalog triggers mandatory patching requirements for federal agencies under BOD 22-01 and serves as a strong indicator that all organizations should prioritize this vulnerability. Delays in patching known exploited vulnerabilities significantly increase the risk of successful cyberattacks and potential data breaches.","**Immediate actions:**\n- Apply security patches for CVE-2026-1340 on all Ivanti EPMM systems immediately\n- Identify and inventory all instances of Ivanti EPMM across the organization\n- Monitor systems for signs of compromise or unusual activity\n\n**Long-term improvements:**\n- Implement automated vulnerability scanning and patch management processes\n- Establish emergency patching procedures for KEV catalog additions\n- Create asset inventory management to track all endpoint management solutions\n\n**Detection measures:**\n- Enable logging and monitoring for code injection attempts on EPMM systems\n- Deploy network segmentation to isolate endpoint management infrastructure\n- Implement threat intelligence feeds to stay informed of newly exploited vulnerabilities",[12,13,14,15,16],"CIS Control 7 (Continuous Vulnerability Management)","NIST SP 800-53 SI-2 (Flaw Remediation)","NIST CSF PR.IP-12 (Vulnerability Management Plan)","CISA BOD 22-01","ISO 27001 A.12.6.1 (Management of Technical Vulnerabilities)","published","2026-04-08T19:09:30.789669+00:00","2026-04-08T19:09:30.452+00:00",{"id":7,"url":21,"slug":22,"title":23},"https:\u002F\u002Fwww.cisa.gov\u002Fnews-events\u002Falerts\u002F2026\u002F04\u002F08\u002Fcisa-adds-one-known-exploited-vulnerability-catalog","cisa-adds-one-known-exploited-vulnerability-to-catalog-6d81ab","CISA Adds One Known Exploited Vulnerability to Catalog",[25,31],{"id":26,"name":27,"slug":28,"description":29,"color":30},"05757c8d-6b93-4194-b35d-7359e7d33b0e","Vulnerability Management","vulnerability-management","Missing scans, no risk prioritization","#fb923c",{"id":32,"name":33,"slug":34,"description":35,"color":36},"af7fce9e-1ce8-4156-93bc-09dcfbfdf29d","Patch Management","patch-management","Unpatched vulnerabilities, delayed updates","#ef4444",[]]