logo

CISA Warns of Citrix NetScaler Authentication Bypass Vulnerability Exploited in Attacks

ID: e37e4d6c-b7c1-57db-a0ab-0d748df210d2

STIX ID: report--e37e4d6c-b7c1-57db-a0ab-0d748df210d2

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2026-09-10

Date Updated: 2026-09-11

Author: Abinaya

...
...

CISA added CVE-2026-19490 — a critical authentication-bypass flaw in Citrix NetScaler ADC and Gateway — to its Known Exploited Vulnerabilities catalog after public proof-of-concept code and observed exploitation attempts; agencies must apply mitigations by September 12, 2026. The report lists affected firmware versions and configuration conditions (AAA, Gateway, VPN, SAML), describes honeypot-detected exploitation activity, and urges immediate patching, forensic triage, log review for anomalous authentication events and configuration changes, isolation of impacted appliances, credential rotation, and downstream impact assessment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.