Bottom line: Citrix has disclosed critical vulnerabilities in NetScaler ADC and NetScaler Gateway, and CERT-EU advises prompt patching.
On August 19, 2026, Citrix published a security advisory covering several critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends that affected devices be updated immediately.
On August 19, 2026, Citrix issued a security advisory addressing several critical vulnerabilities in NetScaler ADC and NetScaler Gateway. Both products are commonly deployed in enterprises as application delivery controllers and remote access gateways, respectively, and are therefore typically directly reachable from the internet. Further technical details on the individual vulnerabilities, affected versions, or possible CVE-IDs are not available from the source at this time.
CERT-EU classifies the vulnerabilities as critical and issues a corresponding recommendation for action. NetScaler products have repeatedly been targeted by attacks in the past, partly because they are exposed as gateway components at the network edge, and a successful exploit can potentially provide immediate access to internal network areas.
For security teams, this means checking the patch status of all NetScaler ADC and NetScaler Gateway instances in use and promptly applying the updates provided by Citrix. In its advisory, CERT-EU refers to the original source at Citrix; the specific affected versions, CVE references, and update packages should be reviewed there as soon as this information becomes available.
Source: cert.europa.eu · Published August 19, 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrasing and classification by Lumi News Pipeline v1.8.3.