Vulnerabilities · 5h ago
Citrix has patched CVE-2026-107406, a critical flaw in NetScaler ADC and NetScaler Gateway that can let a remote attacker run code or cause a denial of service. CSIRT Italia, NCSC-NL, and INCIBE-CERT said the bug matters only on systems where SAML is enabled, including NetScaler instances configured as a SAML identity provider or service provider.
The bug is a memory overflow in SAML processing: specially crafted identity traffic can make the appliance mishandle memory instead of just rejecting a login. That puts the authentication edge itself at risk, so hybrid Secure Private Access deployments that rely on those NetScaler instances inherit the same exposure.
For operators, the key point is scope, not just severity. This is a serious patch item, but the immediate blast radius is the SAML-enabled subset of ADC and Gateway appliances, not every NetScaler box in the estate.
6 sources covering this story
Citrix gives NetScaler admins another critical reason to patch
No word on exploitation status, but a 9.5 severity score suggests time is of the essence
Citrix warns admins to patch new NetScaler RCE flaw immediately
Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions.
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments
Citrix patched CVE-2026-107406, a critical NetScaler memory overflow that could allow RCE or DoS in deployments configured for SAML.
Rilevata vulnerabilità in prodotti Citrix NetScaler
Citrix ha rilasciato aggiornamenti di sicurezza per risolvere una vulnerabilità con gravità "critica" presente nei prodotti NetScaler ADC e Gateway.
Desbordamiento de memoria en NetScaler ADC y NetScaler Gateway de Citrix
Michael Tucker, Chew Keong Tan y Alex Bernier, del equipo JPMorgan Chase XOR Team, y Maxim Suhanov han
Kwetsbaarheid verholpen in Citrix NetScaler ADC en Gateway
Citrix heeft een kwetsbaarheid verholpen in NetScaler ADC en Gateway producten wanneer deze zijn geconfigureerd als SAML Service Provider (SP) of Identity Provider (IdP).
Part of the PlainSec briefing for 2026-10-09