CVE-2026-4368
Race Condition in NetScaler ADC and NetScaler Gateway when appliance is configured as Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server leading to User Session Mixup
- Published Mar 23, 2026
- CVSS 7.7 high
- 0.3% chance of exploitation in the next 30 days (EPSS)
Affected software
In the news
- CISA orders feds to patch exploited Citrix flaws by Wednesday BleepingComputer ·
- Vulnerabilities affecting Citrix NetScaler ADC and Citrix NetScaler Gateway UK National Cyber Security Centre ·