By hkcert.org
Publication Date: 2026-07-01 12:00:00
Multiple vulnerabilities were identified in Citrix Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition and sensitive information disclosure on the targeted system.
Note:
CVE-2026-8451 is being exploited in the wild. The vulnerability is caused by insufficient input validation leading to memory overread. NetScaler ADC or NetScaler Gateway must be configured as a SAML IDP to be vulnerable. Hence, the risk level is rated as High Risk.



