By Divya
Publication Date: 2026-07-01 06:55:00
Citrix has issued a critical security bulletin addressing multiple high-severity vulnerabilities in NetScaler ADC and NetScaler Gateway.
These vulnerabilities could allow attackers to trigger memory overreads, arbitrary file access, and denial-of-service (DoS) conditions across affected deployments.
The vulnerabilities are tracked as CVE-2026-8451, CVE-2026-8452, CVE-2026-8655, CVE-2026-10816, CVE-2026-10817, and CVE-2026-13474.
They impact widely deployed enterprise networking and remote access infrastructure, raising significant security concerns for organizations that rely on these appliances.
Citrix NetScaler ADC and Gateway Flaws
According to the advisory (CTX696604), the flaws affect NetScaler ADC and Gateway versions 14.1 before 14.1-72.61 and 13.1 before 13.1-63.18, including FIPS and NDcPP variants.
Secure Private Access Hybrid deployments using NetScaler instances are also affected. Notably, Citrix clarified that only customer-managed deployments…

