Wire · regulatory
Citrix NetScaler Authentication Bypass Under Active Exploitation – VPN Infrastructure Joins ...
◆ Sectors
◆ Source
◆ Verified
Fusion42 · 10 September 2026 · Fusion42 review
A critical authentication bypass vulnerability (CVE-2026-19490) in Citrix NetScaler ADC and Gateway is actively exploited within 15 days of disclosure and PoC release, with attacks targeting VPN gateways that secure enterprise access. Despite an urgent need to patch, no workarounds exist, and the window between disclosure and exploitation continues to shrink, posing significant risk to organisations relying on Citrix VPN infrastructure.
This Wire brief sits within Fusion42's coverage of Cybersecurity and Cloud Infrastructure, and 2 sources have reported it between 5 Sep 2026 and 10 Sep 2026.
◆ ◆ The Wire takeaway
Citrix VPN appliances are now prime targets for fast-moving exploits, forcing you to urgently patch or face breaches. Your security perimeter just narrowed its safe window, so treat these devices as critical defence points today.
◆ Coverage
2 sources · first reported 5 Sep 2026 · latest 10 Sep 2026
◆ Related on Wire
◆ Topics