Critical Citrix NetScaler auth bypass now leveraged in attacks

Cybersecurity · September 5, 2026

Cybersecurity·bleepingcomputer.com

Vulnerability intelligence firm Previdian reports that attackers have started actively exploiting a critical authentication-bypass flaw in Citrix NetScaler, tracked as CVE-2026-19490. Because the bug lets an attacker slip past NetScaler's login checks entirely, any unpatched appliance exposed to the internet is at immediate risk. Organizations running NetScaler should apply Citrix's fix without delay and check for signs of compromise.

// source: bleepingcomputer.com ↗

Back to Blog