CVE-2026-8452
Known exploited · CISA KEV
CISA federal remediation date Aug 29
Vulnerabilities · 70 days ago
The exposed set is broader than a single SAML login path. Citrix has now patched multiple NetScaler roles, so a box can still be vulnerable in one enabled function even if another function is already fixed; partial patching leaves some control-plane paths open.
The fixes cover NetScaler ADC and NetScaler Gateway 14.1-72.61 and 13.1-63.18, plus 14.1-72.61 FIPS and 13.1.37.272 for FIPS/NDcPP builds. The six CVEs span SAML IdP, Gateway, load-balancing, HTTP/2, and related parsing flaws, with impact ranging from memory overread and memory overflow to arbitrary file read and denial of service.
That changes the usual appliance assumption. On a multi-role NetScaler, security now depends on every configured service being patched, not just the one that first drew attention.
Known exploited · CISA KEV
CISA federal remediation date Aug 29
10 sources covering this story
CitrixBleed-ing Again? NetScaler Vulnerability Under Attack
Attackers wasted little time targeting the latest memory disclosure bug in Citrix NetScaler, after researchers published a proof-of-concept exploit.
Múltiples vulnerabilidades en NetScaler de Citrix
Citrix ha publicado 6 vulnerabilidades: 5 de severidad alta y 1 de severidad media que, en caso de ser
New CitrixBleed-like NetScaler flaw sees exploit attempts in the wild
Citrix NetScaler received patches for another memory leak vulnerability similar to CitrixBleed, as well as memory overflow, file read and denial-of-service issues
Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials
Arctic Wolf says Anubis affiliates abused RMM tools, VPN logins, RDP, PsExec, and cloud-transfer tools before ransomware deployment.
AL26-016 - Vulnerability impacting Citrix NetScaler CVE-2026-8451
New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure
Hackers are targeting NetScaler appliances using public PoC code to retrieve arbitrary memory content in the HTTP response.
Citrix Patches NetScaler Vulnerabilities, Including New ‘HTTP/2 Bomb’ Attack
Citrix urges customers to patch NetScaler after fixing six vulnerabilities, including the HTTP/2 Bomb flaw and a high-severity CitrixBleed-style information disclosure bug.
Vulnerabilità in prodotti Citrix
Rilevate nuove vulnerabilità di sicurezza nei prodotti NetScaler ADC e NetScaler Gateway di Citrix.
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service
Security updates fix six NetScaler ADC and Gateway vulnerabilities, including 8.8-rated DoS bugs and unauthenticated file read.
Citrix patches a new NetScaler flaw with echoes of CitrixBleed
Citrix patched six NetScaler flaws, headlined by a high-severity memory disclosure bug (CVE-2026-8451) with striking similarities to CitrixBleed.
Kwetsbaarheden verholpen in Citrix Netscaler ADC en Netscaler Gateway Revisies
De kwetsbaarheden met de kenmerken CVE-2026-8451 en CVE-2026-10817 ontstaan door onvoldoende invoervalidatie, waarbij de software invoergroottes en -grenzen niet...
CitrixBleed To Infinity And Beyond (Citrix NetScaler Pre-Auth Memory Overread CVE-2026-8451)
Well, well, well - once again, the cat has dragged us in and spat us out. Today, we find ourselves questioning the reality we sit within. Must it be so predictable, and why us? “But watchTowr, what do you mean?” Well, if you’re here, you likely fit into one of
Part of the PlainSec briefing for 2026-07-04