Citrix NetScaler rischia divulgazione memoria su SAML IdP
Citrix NetScaler ADC e Gateway presentano una vulnerabilità che può causare memory overread su appliance configurate come SAML Identity Provider. CVE-2026-3055 (CVSS 9.3) è già soggetta a ricognizione attiva. Le versioni interessate sono 14.1 prima di 14.1-66.59 e 13.1 prima di 13.1-62.23.
Citrix NetScaler products confirmed to be under exploitation
Security researchers at watchTowr warn that multiple flaws are involved in the early stages of a hacking spree that could rival the 2023 CitrixBleed campaign.
Critical Citrix NetScaler memory flaw actively exploited in attacks
Hackers are exploiting a critical severity vulnerability, tracked as CVE-2026-3055, in Citrix NetScaler ADC and NetScaler Gateway appliances to obtain sensitive data.