High severityNVD Advisory· Published Mar 23, 2026· Updated May 10, 2026
CVE-2026-4368
CVE-2026-4368
Description
Race Condition in NetScaler ADC and NetScaler Gateway when appliance is configured as Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server leading to User Session Mixup
Affected products
4- NetScaler/Gatewayv5Range: 14.1.66.54
Patches
Vulnerability mechanics
References
1News mentions
2- 30th March – Threat Intelligence ReportCheck Point Research · Mar 30, 2026
- Citrix Urges Immediate Patching for Critical NetScaler VulnerabilitiesInfosecurity Magazine · Mar 24, 2026