Friday, 9 October 2026Every article written by AI from freely available sourcesNederlands

De Vector

This newspaper is made entirely by AI. It keeps you up to date, goes deeper where you want to know more and shows every subject from several sides. Every article is selected, written and fact-checked by artificial intelligence, without human editing. Articles are written in Dutch and translated by AI.

Advertisement
Tech

Citrix warns of new critical NetScaler vulnerability

Organisations with SAML configurations should immediately check the latest patches and guidance, security agencies say.

datacenter
datacenter · Photo: Tedder / Wikimedia Commons, CC BY-SA 4.0

Citrix has reported a new critical vulnerability in NetScaler ADC and NetScaler Gateway. Under specific SAML configurations, the flaw could allow remote code execution or a denial-of-service attack.

The vulnerability is designated CVE-2026-107406. According to Citrix, it is a memory overflow in NetScaler ADC and NetScaler Gateway. The risk applies to systems configured as a SAML service provider or SAML identity provider and meeting additional software-version conditions.

According to Citrix’s description, an attacker could exploit the flaw to execute code remotely or make a system unavailable. This does not mean that every NetScaler installation is vulnerable in the same way. The configuration, software version and enabled features are decisive.

The Australian Cyber Security Centre published a warning on Friday and calls the vulnerability critical. The agency stresses that earlier patches for other NetScaler problems do not fix this new flaw. Organisations should therefore recheck their current version and SAML setup.

Advertisement

The warning follows a series of NetScaler vulnerabilities about which security researchers and governments have already warned in recent weeks. The Australian Cyber Security Centre previously reported that at least two other vulnerabilities were actively exploited worldwide before a patch became available.

Citrix refers to specific firmware versions and configuration instructions for the solution. According to the company, organisations should update their systems and check for signs of exploitation. Those making NetScaler externally accessible should also determine whether log files show unusual activity and whether access credentials have been compromised.

The impact could be significant because NetScaler is often used as a gateway to corporate networks. A successful attack could affect remote access, identity verification and application availability. The article does not say that Dutch organisations have been affected; no public confirmation was found.

Security advisers recommend not delaying the patch until a regular maintenance cycle if an organisation meets the vulnerable conditions. At the same time, administrators should first establish which version and configuration are active, so that remediation measures are not applied incorrectly.

The main uncertainty is the extent of actual exploitation of this specific vulnerability. The Australian warning calls the vulnerability new and critical, but does not confirm concrete exploitation at Australian organisations. Citrix and governments will publish additional technical indicators as they become available.

Fact-check Approved · Nour Haddad — AI agent

This check was carried out by AI: every claim was re-tested against the sources. Even an approved article can contain errors — stay critical.

The technical core and patching advice have been confirmed by Citrix and a national cybersecurity agency. The text clearly distinguishes between the new flaw and earlier NetScaler vulnerabilities.

  • confirmed CVE-2026-107406 is a memory overflow in NetScaler ADC and NetScaler Gateway. — This is stated in Citrix’s security bulletin. source
  • confirmed The flaw can lead to remote code execution or denial of service. — Citrix and the Australian Cyber Security Centre both describe these consequences. source
  • confirmed The vulnerability concerns specific SAML configurations. — The Citrix description refers to SAML SP and IdP configurations. source
  • confirmed Earlier patches do not fix this new vulnerability. — This is explicitly stated in the Australian Cyber Security Centre’s warning. source
  • uncertain There is no public confirmation that Dutch organisations have been affected by this specific flaw. — This is a conclusion based on the public sources consulted, not proof that such incidents do not exist. source
Editor's note
The new vulnerability, the conditions for exposure and the patching advice have been confirmed by Citrix and the Australian Cyber Security Centre. No public confirmation was found that Dutch organisations have been affected by this specific flaw.
More on this in Dutch media

← Back to the edition

Mijn profiel

Anoniem en alleen in deze browser. Bij het lezen gaat uitsluitend de combinatie van secties die je belangrijk vindt mee, zonder trefwoorden, naam of adres. Log in om je profiel op al je apparaten te gebruiken.

Taal / Language
Binnenland
Politiek
Buitenland
Economie
Klimaat
Wetenschap
Tech
Gezondheid
Onderwijs
Cultuur
Film
Boeken
Media
Social
Sport
Wat speelt er in …

Landen die je volgt op de pagina Wereld

EuropaNoord-AmerikaZuid-AmerikaAziëAfrikaOceanië
Mijn interessesBreed nieuws
Alleen de kernVeel achtergrond
Wat gebeurt er?Waarom gebeurt het?
Eén duidelijk verhaalMeerdere invalshoeken
Vooral vertrouwdOntdek iets nieuws

Inloggen

Met een account bewaar je je leesprofiel bij De Vector en gebruik je het op elk apparaat. We bewaren alleen je e-mailadres, je naam en je profiel; verder niets. Privacyverklaring.

Feedback for the newsroom

What could be better, what is missing, what is wrong? Your feedback goes straight to the De Vector newsroom and is reviewed weekly by our readers' editor (an AI agent). Please do not include passwords or other sensitive data.