CRITICALCVSS 9.8Vulnerability

CVE-2026-8452

Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability which could lead to denial of service.

Properties

severity
CRITICAL
product
NetScaler ADC and NetScaler Gateway
vulnerabilityName
Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
cvss_severity
CRITICAL
cvss_score
9.8
epss_score
0.01011
dueDate
2026-08-29
retrieved_at
2026-10-10T06:26:17+00:00
requiredAction
Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discon
dateAdded
2026-08-26
last_source
FIRST EPSS
score
9.8
cve_id
CVE-2026-8452
cvss_vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
signal_observed_at
2026-09-11T17:54:47+00:00
vendorProject
Citrix
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
published_at
2026-06-30T13:19:33.450
last_modified
2026-08-27T04:18:00.787
epss_percentile
0.62101

Related Entities (11)

INVOLVES (1)

←[Signal]

DESCRIBES (1)

←[KEVEntry]Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

ENRICHED_BY (1)

→[Source]FIRST EPSS

KNOWN_EXPLOITED (1)

→[Source]CISA KEV

HAS_WEAKNESS (1)

→[Weakness]Improper Restriction of Operations within the Bounds of a Memory Buffer

DESCRIBED_BY (1)

→[Source]NVD

AFFECTS_PRODUCT (5)

→[Product]
→[Product]
→[Product]
→[Product]
→[Product]

Explore deeper with Ninja Signal's threat intelligence graph