Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · citrix

citrix

· 25 Critical

Total CVEs

451

Critical

25

Products

153

Search All CVEs →

451

Products (153)

hypervisor62 CVEsxenserver51 CVEsnetscaler gateway42 CVEsnetscaler application delivery controller32 CVEsnetscaler gateway firmware31 CVEsapplication delivery controller firmware30 CVEsnetscaler application delivery controller firmware29 CVEsgateway27 CVEsapplication delivery controller27 CVEsxenmobile server22 CVEssd-wan18 CVEsnetscaler sd-wan18 CVEsworkspace14 CVEsaccess gateway14 CVEsgateway firmware14 CVEsnetscaler12 CVEsmetaframe10 CVEssd-wan wanop10 CVEsmetaframe presentation server9 CVEsxenapp9 CVEsxen9 CVEsvirtual apps and desktops9 CVEssharefile storagezones controller8 CVEsxendesktop8 CVEscloudportal services manager8 CVEsnetscaler access gateway7 CVEs5000-wo7 CVEs5100-wo7 CVEspresentation server7 CVEs4000-wo7 CVEsnetscaler access gateway firmware7 CVEs4100-wo7 CVEssecure access client6 CVEsaccess essentials6 CVEsprovisioning services6 CVEsnfuse6 CVEsnetscaler sdx6 CVEsapplication delivery management5 CVEsmpx 8920 fips4 CVEssd-wan 2104 CVEsxencenterweb4 CVEsnetscaler sdx firmware4 CVEssd-wan 21004 CVEssd-wan 51004 CVEsweb interface4 CVEsdesktop server4 CVEscloudplatform4 CVEsnetscaler console4 CVEsmpx\/sdx 14030 fips4 CVEsmpx\/sdx 14060 fips4 CVEsmpx\/sdx 14080 fips4 CVEsmpx 15030-50g fips4 CVEsmpx 15040-50g fips4 CVEsmpx 15060-50g fips4 CVEsmpx 15080-50g fips4 CVEsmpx 15100-50g fips4 CVEsmpx 15120-50g fips4 CVEsmpx 8905 fips4 CVEsmpx 8910 fips4 CVEssd-wan 11004 CVEssd-wan 1104 CVEssd-wan 20004 CVEssd-wan 10004 CVEscommand center3 CVEscitrix sd-wan center3 CVEsgateway plug-in3 CVEsnetscaler firmware3 CVEsnetscaler sd-wan center3 CVEsnetscaler service delivery appliance service vm3 CVEspresentation server client3 CVEssd-wan 1000 firmware3 CVEssd-wan 1100 firmware3 CVEssd-wan 110 firmware3 CVEssd-wan 2000 firmware3 CVEssd-wan 2100 firmware3 CVEssd-wan 210 firmware3 CVEssd-wan 4003 CVEssd-wan 40003 CVEssd-wan 4000 firmware3 CVEssd-wan 400 firmware3 CVEssd-wan 4103 CVEssd-wan 41003 CVEssd-wan 4100 firmware3 CVEssd-wan 410 firmware3 CVEssd-wan 5100 firmware3 CVEssd-wan 61003 CVEssd-wan 6100 firmware3 CVEsstorefront server3 CVEsmetaframe client2 CVEsaccess gateway plug-in2 CVEsnetscaler sd-wan firmware2 CVEslinux virtual delivery agent2 CVEsreceiver2 CVEsvdi-in-a-box2 CVEsnetscaler agent2 CVEssecure mail2 CVEssession recording2 CVEsmetaframe password manager2 CVEsonline plug-in for windows for xenapp \& xendesktop2 CVEssharefile2 CVEsgateway plug-in for linux2 CVEsprogram neighborhood agent2 CVEsworkspace app2 CVEscloud connector1 CVEscitrix presentation server1 CVEsxenapp online1 CVEsbroadcast server1 CVEsxenclient xt1 CVEsapplication gateway for avaya1 CVEsxenmobile1 CVEsxenmobile device manager1 CVEsxenmobile device manager mdm1 CVEsfederated authentication service1 CVEsxenmobile mdx toolkit1 CVEsappdna1 CVEssd-wan center management console1 CVEssd-wan orchestrator1 CVEsendpoint analysis client1 CVEsedgesight for presentation server1 CVEssecure gateway1 CVEssharefile mobile1 CVEssharefile mobile for tablets1 CVEssharefile storage zones controller1 CVEsedgesight for netscaler1 CVEsmetaframe secure access manager1 CVEsxp1 CVEsnetscaler gateway 11.01 CVEsnetscaler gateway 11.0 firmware1 CVEsmetaframe conferencing manager1 CVEsuberagent1 CVEslicensing administration console1 CVEslicensing1 CVEsonline plug-in for mac1 CVEsonline plug-in for mac for xenapp \& xendesktop1 CVEsonline plug-in for windows1 CVEslicense server vpx1 CVEsedgesight for endpoints1 CVEsprovisioning1 CVEsprogram neighborhood client1 CVEslicense server1 CVEsreceiver desktop1 CVEsreceiver for iphone1 CVEsreceiver for windows mobile1 CVEsios receiver1 CVEsica program neighborhood client1 CVEsdeterministic network enhancer1 CVEsica client for solaris1 CVEsica client for linux1 CVEswinframe1 CVEscloudstack1 CVEsica client1 CVEsgotomeeting1 CVEsworx home1 CVEs

Recent Vulnerabilities

View all 451
CVE-2026-3055CRITICAL 9.8KEV

Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overread

CVE-2025-7776CRITICAL 9.8

Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and NetScaler Gateway when NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) with PCoIP Profile bounded to it

CVE-2025-7775CRITICAL 9.8KEV

Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler Gateway when NetScaler is configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server (OR) NetScaler ADC and NetScaler Gateway 13.1, 14.1, 13.1-FIPS and NDcPP: LB virtual servers of type (HTTP, SSL or HTTP_QUIC) bound with IPv6 services or servicegroups bound with IPv6 servers (OR) NetScaler ADC and NetScaler Gateway 13.1, 14.1, 13.1-FIPS and NDcPP: LB virtual servers of type (HTTP, SSL or HTTP_QUIC) bound with DBS IPv6 services or servicegroups bound with IPv6 DBS servers (OR) CR virtual server with type HDX

CVE-2025-6759HIGH 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Windows Virtual Delivery Agent for CVAD and Citrix DaaS

CVE-2025-6543CRITICAL 9.8KEV

Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Gateway when configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server

CVE-2025-4879HIGH 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

CVE-2025-0320HIGH 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Secure Access Client for Windows

CVE-2025-5777HIGH 7.5KEV

Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server

CVE-2025-5349HIGH 8.8

Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway

CVE-2025-4365HIGH 7.5

Arbitrary file read in NetScaler Console and NetScaler SDX (SVM)

CVE-2025-1223MEDIUM 6.1

An attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac

CVE-2025-1222MEDIUM 6.1

An attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac

CVE-2024-12284HIGH 8.8

Authenticated privilege escalation in NetScaler Console and NetScaler Agent allows.

CVE-2024-8535HIGH 8.1

Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources

CVE-2024-8534HIGH 8.1

Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled

CVE-2024-8069HIGH 8.0KEV

Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server

CVE-2024-8068HIGH 8.0KEV

Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain

CVE-2024-7890HIGH 7.3

Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

CVE-2024-7889HIGH 7.3

Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

CVE-2024-42423MEDIUM 6.1

Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated user with low privileges may potentially exploit this vulnerability to bypass existing controls and perform unauthorized actions leading to information disclosure and tampering.

CVE-2024-6677HIGH 7.8

Privilege escalation in uberAgent

CVE-2024-6286HIGH 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

CVE-2024-6236HIGH 7.5

Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX

CVE-2024-6151HIGH 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows used by Citrix Virtual Apps and Desktops and Citrix DaaS

CVE-2024-6150MEDIUM 4.3

A non-admin user can cause short-term disruption in Target VM availability in Citrix Provisioning