CISA Warns of Citrix NetScaler Authentication Bypass Vulnerability Exploited in Attacks
ID: e37e4d6c-b7c1-57db-a0ab-0d748df210d2
STIX ID: report--e37e4d6c-b7c1-57db-a0ab-0d748df210d2
Feed Name: cybersecurityNews.com
CISA added CVE-2026-19490 — a critical authentication-bypass flaw in Citrix NetScaler ADC and Gateway — to its Known Exploited Vulnerabilities catalog after public proof-of-concept code and observed exploitation attempts; agencies must apply mitigations by September 12, 2026. The report lists affected firmware versions and configuration conditions (AAA, Gateway, VPN, SAML), describes honeypot-detected exploitation activity, and urges immediate patching, forensic triage, log review for anomalous authentication events and configuration changes, isolation of impacted appliances, credential rotation, and downstream impact assessment.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
