Site icon VMVirtualMachine.com

CISA Gives Agencies 72 Hours to Patch a Citrix Flaw Hackers Already Own – Startup Fortune

CISA Gives Agencies 72 Hours to Patch a Citrix Flaw Hackers Already Own – Startup Fortune

By Judith Murphy
Publication Date: 2026-08-28 13:52:00

CISA added CVE-2026-8452, a Citrix NetScaler ADC and Gateway flaw first dismissed as a denial-of-service bug, to its Known Exploited Vulnerabilities catalog on August 26 and ordered federal agencies to patch by August 29. WatchTowr showed the flaw actually allows unauthenticated remote code execution, and attackers are already dropping web shells on unpatched appliances.

Exit mobile version