Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments

Citrix has released patches for CVE-2026-107406, a critical (CVSS 9.5) memory overflow vulnerability in NetScaler ADC and NetScaler Gateway that could enable remote code execution or denial-of-service in SAML deployments. The flaw is distinct from the NetScaler zero-day Citrix warned about earlier this week. Administrators are urged to patch immediately.

Source: thehackernews.com

Curated Permalink