citrix security advisories
10 threat alerts tracking vulnerabilities and security advisories that affect citrix products.
Vulnios monitors citrix CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent citrix security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2023-3519 — citrix — netscaler_application_delivery_controller, netscaler_gateway
Unauthenticated remote code execution
criticalCVE-2023-3519Critical Vulnerability: CVE-2023-4966 — citrix — netscaler_application_delivery_controller, netscaler_gateway
Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.
criticalCVE-2023-4966Critical Vulnerability: CVE-2026-8452 — citrix — netscaler_application_delivery_controller, netscaler_gateway
Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy,
criticalCVE-2026-8452Critical Vulnerability: CVE-2026-8655 — citrix — netscaler_application_delivery_controller, netscaler_gateway
Multiple Memory overflow vulnerabilities in NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if NetScaler ADC is configured as an LB of type Ora
criticalCVE-2026-8655Critical Vulnerability: CVE-2016-6493 — citrix — xenapp, xendesktop
Citrix XenApp 6.x before 6.5 HRP07 and 7.x before 7.9 and Citrix XenDesktop before 7.9 might allow attackers to weaken an unspecified security mitigation via vectors related to memory permission.
criticalCVE-2016-6493Critical Vulnerability: CVE-2016-5302 — citrix — xenserver
Citrix XenServer 7.0 before Hotfix XS70E003, when a deployment has been upgraded from an earlier release, might allow remote attackers on the management network to "compromise" a host by leveraging cr
criticalCVE-2016-5302Critical Vulnerability: CVE-2016-2071 — citrix — netscaler_application_delivery_controller, netscaler
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e before Build 59.1305.e allows remote attackers to ga
criticalCVE-2016-2071Critical Vulnerability: CVE-2016-9679 — citrix — provisioning_services
Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code by overwriting a function pointer.
criticalCVE-2016-9679Critical Vulnerability: CVE-2016-9676 — citrix — provisioning_services
Buffer overflow in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.
criticalCVE-2016-9676Critical Vulnerability: CVE-2016-9678 — citrix — provisioning_services
Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.
criticalCVE-2016-9678
Track citrix exposure across your environment
Vulnios automatically cross-references your asset inventory against new citrix CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan