Site icon VMVirtualMachine.com

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

By The Hacker News
Publication Date: 2026-08-20 13:35:00

Ravie LakshmananAug 20, 2026Network Security / Enterprise Security

Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentication bypass vulnerability.

According to the cloud computing and virtualization technology company, the issues affect customer-managed NetScaler ADC and NetScaler Gateway, including certain FIPS and NDcPP builds, as well as SecurAccess ZTNA Hybrid deployments that use customer-managed NetScaler instances.

It bears noting that the vulnerabilities do not apply to Citrix-managed cloud services or Citrix-managed Adaptive Authentication, as the necessary updates have already been applied. The list of impacted NetScaler versions is below –

  • NetScaler ADC and NetScaler Gateway 14.1 BEFORE 14.1-73.32
  • NetScaler ADC and NetScaler Gateway 13.1 BEFORE 13.1-63.21
  • NetScaler ADC FIPS BEFORE 14.1-73.32 FIPS
  • NetScaler ADC FIPS and NDcPP BEFORE…

Exit mobile version