【Vulnerability Alert】NetScaler ADC and NetScaler Gateway Contain a High-Risk Security Vulnerability (CVE-2026-19490). Please Confirm and Apply Patches as Soon as Possible
Source: Ministry of education information & communication security contingency platform
"" "" ""
| Publication Number | TACERT-ANA-2026082703084646 | Publication Time | 2026-08-27 15:54:47 |
| Incident Type | ANA-Vulnerability Alert | Discovery Time | 2026-08-27 15:54:47 |
| Impact Level | Medium | ||
| [Subject] 【Vulnerability Alert】NetScaler ADC and NetScaler Gateway Contain a High-Risk Security Vulnerability (CVE-2026-19490). Please Confirm and Apply Patches as Soon as Possible |
|||
| [Content]
Forwarded from the National Institute of Cyber Security Cybersecurity Alert NISAC-200-202608-00000011 Researchers discovered that NetScaler ADC and NetScaler Gateway contain an Authentication Bypass vulnerability (CVE-2026-19490). When the device is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, or RDP Proxy) or an AAA virtual server, an unauthenticated remote attacker may bypass the authentication mechanism through an alternate path. Please confirm and apply patches as soon as possible. Information Sharing Level: WHITE (the intelligence content is information that may be publicly disclosed) |
|||
| [Affected Platform]
NetScaler ADC and NetScaler Gateway versions 14.1-x to versions prior to 14.1-73.32 |
|||
|
[Recommended Actions] The official vendor has released a remediation update for the vulnerability. Please refer to the official instructions for updating. The URL is as follows: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696939 |
|||
|
[Reference] 1.https://nvd.nist.gov/vuln/detail/CVE-2026-19490 |
|||
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw





