chiprook
← Security
SecuritySeptember 17, 2026, 10:13

CVE-2026-19490: NetScaler SAML Bypass Detection and Mitigation

An authentication bypass via SAML (CWE-288, CVSS 9.3) has been found in NetScaler ADC and Gateway: the device accepts an assertion without a valid signature and grants a session as any user. Citrix issued bulletin CTX696939, and CISA added the vulnerability to its exploited catalog on September 9, 2026.

CVE-2026-19490: NetScaler SAML Bypass Detection and Mitigation
#Citrix#NetScaler#CISA
Read next
Security

NIO ES8 in Norwegian Mine: 90% of Traffic Went to Chinese Servers

Security

Fake LastPass Installers Pushed Kernel Driver That Killed 145 Security Tools

Security

Hacktron details attack chain that compromised OpenAI employee accounts

Security

iOS 27 lets apps ask your iPhone if you're being scammed