Citrix security advisory (AV26-833) - Update 1
At a glance
- Severity
- Medium
- Used in attacks
- No flaws named
- Vendors and products
- Citrix
- Industries
- Government
- Reported by
- 1 outlet
As of August 19, 2026, Citrix is affected by vulnerabilities in the following products:
- NetScaler ADC and NetScaler
- Version 13.1 prior to 13.1-63.21
- Version 14.1 prior to 14.1-73.32
- NetScaler ADC FIPS
- Prior to 14.1-73.32 FIPS
- NetScaler ADC FIPS and NDcPP
- Prior to 13.1-37.277
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
Update 1
On September 9, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-19490 to their Known Exploited Vulnerabilities (KEV) Database.
Reproduced in full under licence from Canadian Centre for Cyber Security. © Canadian Centre for Cyber Security. Written by Canadian Centre for Cyber Security.
Coverage
One outlet has carried this so far.
2026-09-09 20:10 UTC
Related stories
- Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution
The Hacker News · 2026-09-16
- PHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug
Infosecurity Magazine · 2026-09-16
- Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories
The Hacker News · 2026-09-16
- Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix
The Hacker News · 2026-09-16
- Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
The Hacker News · 2026-09-16 · exploited