Citrix
- 6
- vulnérabilités suivies
- 2
- critiques
- 30 juin 2026
- dernière publication
cve
Veille des vulnérabilités
identifiantvulnérabilitésévéritépublié
CVE-2026-10816Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is enabledCitrix Netscaler Application Delivery Controller Élevée CVSS 7.5 CVE-2026-10817Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is enabled in TCP Profile and is associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScalerCitrix Netscaler Application Delivery Controller Élevée CVSS 7.5 CVE-2026-13474Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScalerCitrix Netscaler Application Delivery Controller Élevée CVSS 7.5 CVE-2026-8451Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetScaler Gateway is configured as a SAML IDPCitrix Netscaler Application Delivery Controller Élevée CVSS 7.5 CVE-2026-8452Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual serverCitrix Netscaler Application Delivery Controller Critique CVSS 9.8 CVE-2026-8655Multiple Memory overflow vulnerabilities in NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if NetScaler ADC is configured as an LB of type Oracle OR NetScaler ADC is configured as a DNS Proxy OR NetScaler ADC is configured as a DNS recursive resolver deploymentCitrix Netscaler Application Delivery Controller Critique CVSS 9.8