logo

Citrix NetScaler bug exploited in days, may be multiple flaws in a trench coat

ID: 9159b209-326d-5f7b-9160-dbc718c5a7b5

STIX ID: report--9159b209-326d-5f7b-9160-dbc718c5a7b5

Feed Name: The Register (Security)

Threat Score
88/100

Date Published: 2026-03-30

Date Updated: 2026-04-26

Author: Carly Page

...
...

In-the-wild exploitation of a critical Citrix NetScaler memory overread (CVE-2026-3055, CVSS 9.3) began within days of disclosure; researchers observed reconnaissance and active exploitation that can return sensitive memory contents (tokens, credentials). The flaw comprises multiple related memory-leak issues, affects widely exposed NetScaler ADC/Gateway deployments in identity paths, and authorities have urged immediate patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.