Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
5764 articles · 192448 vulns · 37/41 feeds (7d)
← Back to list
8.8
CVE-2026-8451KEVEXPLOITEDPATCHED
citrix · netscaler_application_delivery_controller

Insufficient input validation leading to memory overread

Description

The bug is described as an out-of-bounds read issue affecting NetScaler appliances configured as SAML IDP and leading to memory disclosure. It was discovered in NetScaler’s XML parser, which did not terminate unquoted XML attribute values if they were followed by a newline character. Because of the flaw, the parser would read past the intended buffer, and NetScaler would return memory contents in the NSC_TASS cookie in an HTTP response.

Affected Products

VendorProductVersions
citrixnetscaler_application_delivery_controller14.1, 13.1, 14.1 FIPs, 13.1 FIPS and NDcPP, 14.1, 13.1, 14.1-72.61, 13.1-63.18, 14.1-72.61 FIPS, 13.1-37.272

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
citrixnetscalercert_advisory90%
citrixnetscaler_gatewaycve_cpe95%

References

  • https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604

Related News (10 articles)

Tier E
Hacker News41d ago
CVE-2026-8451: Citrix NetScaler SAML Memory Overread
→ No new info (linked only)
Tier B
CCCS Canada45d ago
AL26-016 - Vulnerability impacting Citrix NetScaler CVE-2026-8451
→ No new info (linked only)
Tier D
SecurityWeek46d ago
New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure
→ No new info (linked only)
Tier B
BSI Advisories47d ago
[NEU] [hoch] Citrix Systems NetScaler ADC und Gateway: Mehrere Schwachstellen
→ No new info (linked only)
Tier D
The Hacker News47d ago
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service
→ No new info (linked only)
Tier B
CERT-FR47d ago
Multiples vulnérabilités dans les produits Citrix (01 juillet 2026)
→ No new info (linked only)
Tier E
Reddit r/cybersecurity47d ago
CitrixBleed To Infinity And Beyond (Citrix NetScaler Pre-Auth Memory Overread CVE-2026-8451) - watchTowr Labs
→ No new info (linked only)
Tier E
Reddit r/netsec47d ago
CitrixBleed To Infinity And Beyond (Citrix NetScaler Pre-Auth Memory Overread CVE-2026-8451) - watchTowr Labs
→ No new info (linked only)
Tier B
CCCS Canada48d ago
Citrix security advisory (AV26-645)
→ No new info (linked only)
Tier C
VulDB48d ago
CVE-2026-8451 | Citrix NetScaler ADC/NetScaler Gateway buffer overflow (CTX696604)
→ No new info (linked only)
CVSS 3.18.8 CRITICAL
CISA KEV✅ Yes
Actively exploited✅ Yes
Patch available
14.1-72.61
CWECWE-125, CWE-20
PublishedJun 30, 2026
Last enriched45d agov5
Tags
CVE-2026-8451CVE-2026-8452CVE-2026-8655CVE-2026-10816CVE-2026-10817CVE-2026-13474
Trending Score0
Source articles10
Independent9
Info Completeness12/14
Missing: epss, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-8452EXPKEV
Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service
Trending: 121
NONECVE-2026-53565
Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges
Trending: 1
HIGHCVE-2026-53566EXP
Out-of-bounds memory read
Trending: 1
HIGHCVE-2026-13474EXP
Denial of service via malformed HTTP/2 requests
CRITICALCVE-2026-10816
Arbitrary File Read (Unauthenticated)

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jun 30, 2026
Added to CISA KEV
Jun 30, 2026
Discovered by ZDM
Jun 30, 2026
Actively Exploited
Jun 30, 2026
Exploit Available
Jun 30, 2026
Patch Available
Jun 30, 2026
Updated: description, severity, activelyExploited
Jun 30, 2026
Updated: cvssEstimate, cweIds, tags
Jul 1, 2026
Updated: description, exploitAvailable, iocs
Jul 2, 2026
Updated: affectedVersions, patchAvailable, tags
Jul 2, 2026

Version History

v5
Last enriched 45d ago
v5Tier B45d ago

Updated product to include NetScaler Gateway, added new affected versions and fixed version numbers, and included additional CVE tags.

affectedVersionspatchAvailabletags
via CCCS Canada
v4Tier D46d ago

Updated description with technical details about the out-of-bounds read issue and added information on active exploitation and related IP addresses.

descriptionexploitAvailableiocs
via SecurityWeek
v3Tier D47d ago

Updated description with new details, added CVSS score of 8.8, and included new CWE ID CWE-20.

cvssEstimatecweIdstags
via The Hacker News
v2Tier C48d ago

Updated severity to CRITICAL, changed exploit availability to false, and provided a more detailed description of the vulnerability.

descriptionseverityactivelyExploited
via VulDB
v148d ago

Initial creation