www.rapid7.com 8/19/2026, 6:32:13 PM · external

CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway

CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
Developing story vulnerability 2 articles tracked
Citrix NetScaler authentication bypass vulnerability (CVE-2026-19490)
CyberSIXT Evidence Panel
Primary Source support.citrix.com
CISA KEV Not in KEV
Patch Patch Status Unknown

ON August 19, 2026, a security advisory was released for CVE-2026-19490, a critical authentication bypass vulnerability in Citrix NetScaler ADC and NetScaler Gateway with a CVSS v4.0 score of 9.3. This vulnerability allows unauthenticated attackers remote access without user interaction. The impacted versions are classified and organizations are advised to prioritize patching. As of the advisory date, no known exploits were observed in the wild, but Citrix products are high-value targets. Organizations should check their systems for specific configurations indicating vulnerability and apply necessary updates.

View Primary Source Via www.rapid7.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline