Memory Overflow Vulnerability in NetScaler ADC and Gateway by Citrix
CVE-2026-8452

8.8HIGH

Key Information:

Vendor

Netscaler

Vendor
CVE Published:
30 June 2026

What is CVE-2026-8452?

A memory overflow vulnerability has been identified in Citrix's NetScaler ADC and NetScaler Gateway, which may lead to unpredictable behavior and potential denial of service if configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server. This vulnerability can compromise system stability and performance, making it crucial for organizations to ensure their devices are configured properly and promptly patched.

Affected Version(s)

ADC 14.1 < 72.61

ADC 13.1 < 63.18

ADC 14.1 FIPS < 72.61

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.