CVE-2026-3055
Known exploited · CISA KEV
CISA federal remediation date Apr 2
Vulnerabilities & Exploits · Zero-Day Exploit
Citrix NetScaler ADC and Gateway appliances configured as SAML Identity Providers are under active attack exploiting CVE-2026-3055, a critical out-of-bounds. CVEs: CVE-2026-3055.
10 sources · Mar 30
Known exploited · CISA KEV
CISA federal remediation date Apr 2
BleepingComputer
Critical Citrix NetScaler memory flaw actively exploited in attacks
Hackers are exploiting a critical severity vulnerability, tracked as CVE-2026-3055, in Citrix NetScaler ADC and NetScaler Gateway appliances to obtain sensitive data.
originalCybersecurity Dive
Citrix NetScaler products confirmed to be under exploitation
Security researchers at watchTowr warn that multiple flaws are involved in the early stages of a hacking spree that could rival the 2023 CitrixBleed campaign.
originalInfosecurity Magazine
Critical Citrix NetScaler Vulnerability Exploited in the Wild
Researchers from watchTowr and Defused have found evidence that attackers are actively exploiting CVE-2026-3055, a critical NetScaler vulnerability
originalPart of the PlainSec briefing for 2026-04-02
Every edition of this story: Security update