@andregironda.bsky.social

CVE-2026-88778 - TCP Initial Sequence Number (ISN) prediction CVE ID : CVE-2026-88778 Published : Sept. 27, 2026, 5:16 p.m. | 58 minutes ago Description : Predictable exact value from previous values vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. Th...

CVE-2026-88778 - TCP Initial Sequence Number (ISN) prediction

Predictable exact value from previous values vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23.

cvefeed.io

CVE-2026-88773 - HTTP Request Smuggling CVE ID : CVE-2026-88773 Published : Sept. 27, 2026, 5:16 p.m. | 58 minutes ago Description : Inconsistent interpretation of HTTP requests ('HTTP Request/Response smuggling') vulnerability in Citrix NetScaler ADC and Citrix NetScale...

CVE-2026-88773 - HTTP Request Smuggling

Inconsistent interpretation of HTTP requests ('HTTP Request/Response smuggling') vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1-37.279 and NDcPP; Gateway: before 14.1-73.37 FIPS and before 13.1-64.23.

cvefeed.io

CVE-2026-88773 - gateway Older versions of Citrix NetScaler ADC and NetScaler Gateway may treat incoming web requests differently, allowing a single request to be split and processed incorrectly.… Too many irrelevant or confusing CVEs? Use stackflag.com #gateway #citrixnetscaler #CVE #infosec

CVE-2026-88773: Citrix NetScaler ADC and Gateway can mishandle web traffic

Older versions of Citrix NetScaler ADC and NetScaler Gateway may treat incoming web requests differently, allowing a single request to be split and.

stackflag.com

🚨 CVE-2026-88773 — CVSS 9.3 CRITICAL Inconsistent interpretation of HTTP requests ('HTTP Request/Response smuggling') vulnerability in Citrix Ne... 🔎 https://stemshop.top/cve/CVE-2026-88773 #CVE #CyberSecurity #InfoSec

CVE-2026-88772 - adc Versions of Citrix NetScaler ADC and NetScaler Gateway released before the latest updates can be tricked into running unwanted code or stopping service. This could let an attacker… Too many irrelevant or confusing CVEs? Use stackflag.com #adc #citrixnetscaler #CVE #infosec

CVE-2026-88772: Citrix NetScaler ADC/Gateway may allow takeover or crash

Versions of Citrix NetScaler ADC and NetScaler Gateway released before the latest updates can be tricked into running unwanted code or stopping service.

stackflag.com

🚨 CVE-2026-88772 — CVSS 9.5 CRITICAL Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.... 🔎 https://stemshop.top/cve/CVE-2026-88772 #CVE #CyberSecurity #InfoSec

CVE-2026-88771 Older versions of Citrix NetScaler ADC and NetScaler Gateway do not properly check certain inputs, which could let an unauthenticated attacker run commands on the device. This could give the attacker control… Too many irrelevant or confusing CVEs? Use stackflag.com #CVE #infosec

CVE-2026-88771: Citrix NetScaler ADC/Gateway allows remote command execution

Older versions of Citrix NetScaler ADC and NetScaler Gateway do not properly check certain inputs, which could let an unauthenticated attacker run.

stackflag.com

🚨 CVE-2026-88771 — CVSS 9.5 CRITICAL Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue af... 🔎 https://stemshop.top/cve/CVE-2026-88771 #CVE #CyberSecurity #InfoSec

Citrix released patched today for 8 NetScaler vulnerabilities, CVE-2026-88771 through CVE-2026-88778. Although I don't know all the details, word is that one or more of these vulnerabilities are being actively exploited. Patch as soon as possible.

NetScalerの重大な脆弱性により、特定のゲートウェイサーバーおよびAAAサーバーで認証を回避できる可能性がある Citrixは、NetScaler ADCおよびNetScaler Gatewayの導入に影響を与える2つのセキュリティ上の欠陥に対処するためのアップデートをリリースしました。これには、深刻な認証バイパスの脆弱性が含まれています。 クラウドコンピューティングおよび仮想化技術企業によると、これらの問題は、特定のFIPSおよびNDcPPビルドを含む、顧客が管理するNetScaler ADCおよびNetScaler Gateway、ならびに顧客が管理するNetScalerイ...

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

Citrix fixes NetScaler CVE-2026-19490, a CVSS 9.3 authentication bypass affecting certain Gateway, AAA, and SAML configurations.

thehackernews.com

Citrixは、NetScalerの新たな脆弱性をできるだけ早く修正するよう管理者に強く求めている。 Citrixは、NetScaler GatewayセキュアリモートアクセスソリューションとNetScaler ADCネットワークアプライアンスに影響を与える2つの脆弱性からシステムを保護するため、顧客に対し直ちにセキュリティ対策を講じるよう警告した。 2つのうちより深刻な脆弱性(CVE-2026-19490として追跡)では、NetScalerのファームウェアバージョンとSAMLアクションが構成されているかどうかに応じて、アプライアンスがAAA仮想サーバーまたはゲートウェイ(SSL V...

Citrix urges admins to patch new NetScaler flaws as soon as possible

Citrix has warned customers to immediately secure their systems against two vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances.

bleepingcomputer.com

Citrix NetScalerの重要な認証バイパスに対する悪用が予想されるが、パッチが適用された。 CVE-2026-19490(CVSSスコア9.3)として追跡されているこの重大なバグは、代替パスを使用した認証バイパスとして説明されており、ゲートウェイ(SSL VPN、ICAプロキシ、CVPN、RDPプロキシ)またはAAA仮想サーバーとして構成されたNetScalerアプライアンスに影響を与えます。 サイバーセキュリティ企業のRapid7によると、この脆弱性は、ユーザーの操作なしに、遠隔地の認証されていない攻撃者によって悪用される可能性があるという。 Citrixの勧告によると...

Exploitation Expected for Critical Authentication Bypass Patched in Citrix NetScaler

Citrix has patched CVE-2026-19490, a critical-severity vulnerability in NetScaler leading to authentication bypass.

securityweek.com

Citrix NetScalerの重大な脆弱性により、攻撃者が認証を回避できることが判明 Cloud Software Groupは、顧客が管理するNetScaler ADCおよびNetScaler Gatewayアプライアンスに影響を与える2つの脆弱性に関する重要なセキュリティ速報を発行しました。 これらの脆弱性の中には、認証を回避できる欠陥があり、リモートアクセス環境が認証されていない侵入に対して脆弱になる可能性がある。 Citrix NetScalerの脆弱性 最も深刻な問題は、CVE-2026-19490として追跡されており、CVSS v4の基本スコアは9.3で、CWE-2...

Critical Citrix NetScaler Flaw Allows Attackers to Bypass Authentication

Cloud Software Group has issued a critical security bulletin regarding two vulnerabilities that affect customer-managed NetScaler ADC and NetScaler Gateway appliances.

gbhackers.com

「NetScaler ADC/Gateway」に認証回避の脆弱性 - 重要度「クリティカル」 「NetScaler ADC(旧Citrix ADC)」「NetScaler Gateway(旧Citrix Gateway)」に深刻な脆弱性が明らかとなった。重要度は「クリティカル」とされており、利用者にアップデートを呼びかけている。 Cloud Software Groupは現地時間8月19日、セキュリティアドバイザリを公開し、「CVE-2026-19490」「CVE-2026-19489」について明らかにしたもの。アドバイザリの重要度を4段階中もっとも高い「クリティカル(Critica...

【セキュリティ ニュース】「NetScaler ADC/Gateway」に認証回避の脆弱性 - 重要度「クリティカル」(1ページ目 / 全1ページ):Security NEXT

「NetScaler ADC(旧Citrix ADC)」「NetScaler Gateway(旧Citrix Gateway)」に深刻な脆弱性が明らかとなった。重要度は「クリティカル」とされており、利用者にアップデートを呼びかけている。 :Security NEXT

security-next.com

CVE-2026-62062 - WordPress Elementor Website Builder plugin CVE ID : CVE-2026-62062 Published : Sept. 25, 2026, 6:29 a.m. | 29 minutes ago Description : Cross-Site Request Forgery (CSRF) vulnerability in Elementor Website Builder allows Cross Site Request Forgery. This ...

CVE-2026-62062 - WordPress Elementor Website Builder plugin <= 4.3.1 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Elementor Website Builder allows Cross Site Request Forgery. This issue affects Elementor Website Builder: from n/a through 4.3.1.

cvefeed.io