CISA gives feds four days to patch Ivanti flaw exploited as zero-day
Hacker NewsMay 8, 2026
cisaivantizero-daycybersecurityvulnerability
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent directive for federal agencies to patch a critical vulnerability in Ivanti's software, which has been actively exploited as a zero-day. Agencies are given a tight deadline of four days to implement the necessary updates to safeguard against potential attacks. This move underscores the ongoing challenges in maintaining cybersecurity within federal systems.