Cyberscoop Citrix NetScaler Vulnerabilities Enable DoS and Memory Disclosure Attacks
Article Content
- •Citrix disclosed six high-severity vulnerabilities in NetScaler products.
- •CVE-2026-8451 allows unauthenticated memory disclosure via SAML IDP configuration.
- •Proof-of-concept exploit for CVE-2026-8451 was released shortly after disclosure.
Citrix disclosed six high-severity vulnerabilities in NetScaler ADC and Gateway appliances, including CVE-2026-8451, which allows unauthenticated memory disclosure when configured as a SAML identity provider. Other vulnerabilities can lead to denial-of-service (DoS) attacks, arbitrary file access, and memory overreads. The vulnerabilities were published on June 30, 2026, with a proof-of-concept exploit for CVE-2026-8451 released on July 1, 2026. So far, there are no confirmed reports of exploitation. Affected systems include those configured for single sign-on and DNS proxy setups. Administrators are urged to apply security updates to mitigate risks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (86)
Following this threat?
Track Citrix and CVE-2026-10816 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Zero-Day Vulnerabilities in Citrix NetScaler Under Active Exploitation On September 26, 2026, security firm watchTowr reported two unpatched zero-day vulnerabilities in Citrix NetScaler ADC and Gateway appliances, allowing remote code execution (RCE) and actively exploited in the wild. Citrix has confirmed the existence of these vulnerabilities, tracked as CVE-2026-88771 and…