Warning: Critical Authentication Bypass in Citrix NetScaler ADC & NetScaler Gateway, Patch Immediately!
ID: 1b7f938f-8e13-5f7d-a228-1e8c2aabc4b3
STIX ID: report--1b7f938f-8e13-5f7d-a228-1e8c2aabc4b3
Threat Score
**Executive summary:** Citrix NetScaler ADC and NetScaler Gateway are affected by CVE-2026-19490, a remote authentication-bypass vulnerability (CVSS v4.0 Base Score 9.3) that can be exploited without authentication when specific configurations (notably SAML actions and Gateway/AAA vservers) are present; the vendor and CCB advise urgent patching, enhanced monitoring, and reporting, and note no current evidence of active exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
