CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-14902

mediumCVSS 4covered by 2 sourcesfirst seen 2026-07-14
Serial number: AV26-696 Date: July 14, 2026 On July 14, 2026, Ivanti published a security advisory to address vulnerabilities in the following product: Ivanti Xtraction – version 2026.2 and prior The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates. Security Advisory Ivanti Xtraction (CVE-2026-14902, CVE-2026-14903) Ivanti Security Advisories

CSIRTS triage

vendor: Ivantiproduct: XtractionOtheraffected: 2026.2 and prior
What
Vulnerabilities have been identified in Ivanti Xtraction.
Who is affected
Users of Ivanti Xtraction version 2026.2 and prior.
Urgency
Remediation is necessary as vulnerabilities could pose risks, although no exploitation has been reported.
Action
Update to the latest version of Ivanti Xtraction to mitigate the vulnerabilities.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-14902

Get an email if CVE-2026-14902 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-14902

CVE.org record

Embed the live status

CVE-2026-14902 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-14902 status](https://www.csirts.com/badge/CVE-2026-14902)](https://www.csirts.com/cve/CVE-2026-14902)