๐ฅ This vulnerability is being actively exploited in the wild (CISA Known Exploited Vulnerabilities catalog)
CVE-2026-8452: Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Summary
Citrix NetScaler ADC and NetScaler Gateway have a buffer overflow vulnerability (a flaw where data overflows past its allocated memory space), which could allow attackers to crash these systems and cause a denial of service (making services unavailable to users). This vulnerability is currently being exploited in real-world attacks.
Solution / Mitigation
Apply mitigations in accordance with vendor instructions from Citrix support (https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604), ensuring compliance with CISA's BOD 26-04 guidance on prioritizing security updates. If mitigations are unavailable, follow BOD 26-04 guidance for cloud services or discontinue use of the product.
Vulnerability Details
EPSS: 1.0%
Yes
๐ฅ Actively Exploited
August 25, 2026
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-8452
First tracked: August 26, 2026 at 02:01 PM
Classified by LLM (prompt v3) ยท confidence: 95%