Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.
← back | CVE Intelligence

CVE-2026-8452 [Critical]

Curated 2 security research writeups, vulnerability advisories and exploitation analyses for CVE-2026-8452.

Vendor
Citrix / NetScaler
Product
NetScaler ADC and NetScaler Gateway
Affected versions
NetScaler ADC and Gateway 14.1 before 14.1-72.61; 13.1 before 13.1-63.18; 13.1 FIPS/NDcPP before 13.1-37.272; vulnerable when configured with SAML SP/IdP or Gateway/AAA virtual-server roles
CVSS
9.8
Coverage Span
2026-08-06 → 2026-08-14
Reports
2 related reports

Associated Reports & Timeline

1.
github.com | vulnerability | Critical | | original ↗ | #rce | #public-poc | #pre-auth | #network-security
watchTowr's PoC covers CVE-2026-8452, a pre-auth flaw in Citrix NetScaler ADC/Gateway reachable when SAML is configured; offsets target build 13.1-30.52, with fixes in 14.1-72.61 and 13.1-63.18.
Why it matters: This is a public pre-auth remote-code-execution PoC, and although offsets are hardcoded for a specific build, it materially lowers the exploitation barrier. NetScaler administrators should upgrade affected builds per the Citrix bulletin and restrict exposed Gateway/AAA surfaces; use the PoC only in explicitly authorized isolated environments.