ON August 19, 2026, a security advisory was released for CVE-2026-19490, a critical authentication bypass vulnerability in Citrix NetScaler ADC and NetScaler Gateway with a CVSS v4.0 score of 9.3. This vulnerability allows unauthenticated attackers remote access without user interaction. The impacted versions are classified and organizations are advised to prioritize patching. As of the advisory date, no known exploits were observed in the wild, but Citrix products are high-value targets. Organizations should check their systems for specific configurations indicating vulnerability and apply necessary updates.
CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
CyberSIXT Evidence Panel
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline