CRITICALCVSS 9.8Vulnerability
CVE-2026-8452
Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability which could lead to denial of service.
Properties
- severity
- CRITICAL
- product
- NetScaler ADC and NetScaler Gateway
- vulnerabilityName
- Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
- cvss_severity
- CRITICAL
- cvss_score
- 9.8
- epss_score
- 0.01011
- dueDate
- 2026-08-29
- retrieved_at
- 2026-10-10T06:26:17+00:00
- requiredAction
- Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discon
- dateAdded
- 2026-08-26
- last_source
- FIRST EPSS
- score
- 9.8
- cve_id
- CVE-2026-8452
- cvss_vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- signal_observed_at
- 2026-09-11T17:54:47+00:00
- vendorProject
- Citrix
- vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- published_at
- 2026-06-30T13:19:33.450
- last_modified
- 2026-08-27T04:18:00.787
- epss_percentile
- 0.62101
Related Entities (11)
INVOLVES (1)
←[Signal]
DESCRIBES (1)
←[KEVEntry]Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
ENRICHED_BY (1)
→[Source]FIRST EPSS
KNOWN_EXPLOITED (1)
→[Source]CISA KEV
HAS_WEAKNESS (1)
→[Weakness]Improper Restriction of Operations within the Bounds of a Memory Buffer
DESCRIBED_BY (1)
→[Source]NVD
AFFECTS_PRODUCT (5)
→[Product]
→[Product]
→[Product]
→[Product]
→[Product]
Explore deeper with Ninja Signal's threat intelligence graph