Citrix
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Citrix product.
RSS Feeds for Citrix security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Citrix products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Citrix Sorted by Most Security Vulnerabilities since 2018
Known Exploited Citrix Vulnerabilities
The following Citrix vulnerabilities have recently been marked by CISA as Known to be Exploited by threat actors.
| Title | Description | Added |
|---|---|---|
| Citrix NetScaler Memory Overflow Vulnerability |
Citrix NetScaler ADC and NetScaler Gateway contain a memory overflow vulnerability that could allow for remote code execution and/or denial of service. CVE-2025-7775 Exploit Probability: 5.7% |
August 26, 2025 |
| Citrix Session Recording Deserialization of Untrusted Data Vulnerability |
Citrix Session Recording contains a deserialization of untrusted data vulnerability that allows limited remote code execution with privilege of a NetworkService Account access. Attacker must be an authenticated user on the same intranet as the session recording server. CVE-2024-8069 Exploit Probability: 48.3% |
August 25, 2025 |
| Citrix Session Recording Improper Privilege Management Vulnerability |
Citrix Session Recording contains an improper privilege management vulnerability that could allow for privilege escalation to NetworkService Account access. An attacker must be an authenticated user in the same Windows Active Directory domain as the session recording server domain. CVE-2024-8068 Exploit Probability: 8.1% |
August 25, 2025 |
| Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability |
Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server. CVE-2025-5777 Exploit Probability: 69.8% |
July 10, 2025 |
| Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability |
Citrix NetScaler ADC and Gateway contain a buffer overflow vulnerability leading to unintended control flow and Denial of Service. NetScaler must be configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server. CVE-2025-6543 Exploit Probability: 2.0% |
June 30, 2025 |
| Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability |
Citrix NetScaler ADC and NetScaler Gateway contain a code injection vulnerability that allows for authenticated remote code execution on the management interface with access to NSIP, CLIP, or SNIP. CVE-2023-6548 Exploit Probability: 8.3% |
January 17, 2024 |
| Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability |
Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for a denial-of-service when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server. CVE-2023-6549 Exploit Probability: 74.9% |
January 17, 2024 |
| Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability |
Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for sensitive information disclosure when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server. CVE-2023-4966 Exploit Probability: 94.3% |
October 18, 2023 |
| Citrix Content Collaboration ShareFile Improper Access Control Vulnerability |
Citrix Content Collaboration contains an improper access control vulnerability that could allow an unauthenticated attacker to remotely compromise customer-managed ShareFile storage zones controllers. CVE-2023-24489 Exploit Probability: 94.4% |
August 16, 2023 |
| Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability |
Citrix NetScaler ADC and NetScaler Gateway contains a code injection vulnerability that allows for unauthenticated remote code execution. CVE-2023-3519 Exploit Probability: 93.5% |
July 19, 2023 |
| Citrix Application Delivery Controller (ADC) and Gateway Authentication Bypass Vulnerability |
Citrix Application Delivery Controller (ADC) and Gateway, when configured with SAML SP or IdP configuration, contain an authentication bypass vulnerability which allows an attacker to execute code as administrator. CVE-2022-27518 Exploit Probability: 23.0% |
December 13, 2022 |
| Citrix Multiple Products Remote Code Execution Vulnerability |
A vulnerability has been identified in the management interface of Citrix NetScaler SD-WAN Enterprise and Standard Edition and Citrix CloudBridge Virtual WAN Edition that could result in an unauthenticated, remote attacker being able to execute arbitrary code as a root user. This vulnerability also affects XenMobile Server. CVE-2017-6316 Exploit Probability: 87.8% |
March 25, 2022 |
| Citrix SD-WAN and NetScaler SQL Injection Vulnerability |
Citrix SD-WAN and NetScaler SD-WAN allow SQL Injection. CVE-2019-12989 Exploit Probability: 91.1% |
March 25, 2022 |
| Citrix SD-WAN and NetScaler Command Injection Vulnerability |
Authenticated Command Injection in Citrix SD-WAN Appliance and NetScaler SD-WAN Appliance. CVE-2019-12991 Exploit Probability: 81.0% |
March 25, 2022 |
| Citrix ShareFile Improper Access Control Vulnerability |
Improper Access Control in Citrix ShareFile storage zones controller may allow an unauthenticated attacker to remotely compromise the storage zones controller. CVE-2021-22941 Exploit Probability: 87.8% |
March 25, 2022 |
| Citrix StoreFront Server Multiple Versions XML External Entity (XXE) |
Citrix StoreFront Server contains a XXE processing vulnerability that could allow an unauthenticated attacker to retrieve potentially sensitive information. CVE-2019-13608 Exploit Probability: 74.1% |
November 3, 2021 |
| Citrix Workspace (for Windows) Prior to 1904 Improper Access Control |
Citrix Workspace app and Receiver for Windows prior to version 1904 contains an incorrect access control vulnerability which allows for code execution. CVE-2019-11634 Exploit Probability: 31.2% |
November 3, 2021 |
| Citrix Application Delivery Controller and Citrix Gateway Vulnerability |
Issue in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0 allowing Directory Traversal. CVE-2019-19781 Exploit Probability: 94.4% |
November 3, 2021 |
| Citrix ADC, Citrix Gateway, Citrix SDWAN WANOP Unauthenticated Authorization Bypass |
Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users. CVE-2020-8196 Exploit Probability: 66.2% |
November 3, 2021 |
| Citrix ADC, Citrix Gateway, Citrix SDWAN WANOP Unauthenticated Authorization Bypass |
Application Delivery Controller (ADC), Gateway, and SDWAN WANOP CVE-2020-8195 Exploit Probability: 73.1% |
November 3, 2021 |
Of the known exploited vulnerabilities above, 8 are in the top 1%, or the 99th percentile of the EPSS exploit probability rankings. 8 known exploited Citrix vulnerabilities are in the top 5% (95th percentile or greater) of the EPSS exploit probability rankings.
Top 10 Riskiest Citrix Vulnerabilities
Based on the current exploit probability, these Citrix vulnerabilities are on CISA's Known Exploited vulnerabilities list (KEV) and are ranked by the current EPSS exploit probability.
| Rank | CVE | EPSS | Vulnerability |
|---|---|---|---|
| 1 | CVE-2019-19781 | 94.4% | Citrix Application Delivery Controller and Citrix Gateway Vulnerability |
| 2 | CVE-2023-24489 | 94.4% | Citrix Content Collaboration ShareFile Improper Access Control Vulnerability |
| 3 | CVE-2023-4966 | 94.3% | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability |
| 4 | CVE-2020-8193 | 94.3% | Citrix ADC, Citrix Gateway, Citrix SDWAN WANOP Unauthenticated Authorization Bypass |
| 5 | CVE-2023-3519 | 93.5% | Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability |
| 6 | CVE-2019-12989 | 91.1% | Citrix SD-WAN and NetScaler SQL Injection Vulnerability |
| 7 | CVE-2021-22941 | 87.8% | Citrix ShareFile Improper Access Control Vulnerability |
| 8 | CVE-2017-6316 | 87.8% | Citrix Multiple Products Remote Code Execution Vulnerability |
| 9 | CVE-2019-12991 | 81.0% | Citrix SD-WAN and NetScaler Command Injection Vulnerability |
| 10 | CVE-2023-6549 | 74.9% | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability |
By the Year
In 2026 there have been 0 vulnerabilities in Citrix. Last year, in 2025 Citrix had 10 security vulnerabilities published. Right now, Citrix is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 10 | 7.59 |
| 2024 | 21 | 7.13 |
| 2023 | 16 | 7.37 |
| 2022 | 16 | 7.37 |
| 2021 | 13 | 7.94 |
| 2020 | 25 | 6.02 |
| 2019 | 18 | 8.23 |
| 2018 | 30 | 7.48 |
It may take a day or so for new Citrix vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Citrix Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2025-6759 | Jul 08, 2025 |
Local Privilege Escalation in Citrix VDA on Windows VDALocal Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Windows Virtual Delivery Agent for CVAD and Citrix DaaS |
|
| CVE-2025-6543 | Jun 25, 2025 |
Citrix NetScaler ADC/Gateway Mem Overflow in Virtual Servers – DoSMemory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Gateway when configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server |
|
| CVE-2025-0320 | Jun 17, 2025 |
CVE-2025-0320 PrivEsc in Citrix Secure Access Client for WindowsLocal Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Secure Access Client for Windows |
|
| CVE-2025-4879 | Jun 17, 2025 |
Citrix Workspace App Windows LPE: Local User Attains SYSTEM PrivilegesLocal Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
|
| CVE-2025-4365 | Jun 17, 2025 |
NetScaler Console & SDX Arbitrary File ReadArbitrary file read in NetScaler Console and NetScaler SDX (SVM) |
|
| CVE-2025-5349 | Jun 17, 2025 |
NetScaler ADC/Gateway: Improper Access Control on Management InterfaceImproper access control on the NetScaler Management Interface in NetScaler ADC?and NetScaler Gateway |
|
| CVE-2025-5777 | Jun 17, 2025 |
Memory Overread in Citrix NetScaler GatewayInsufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server |
|
| CVE-2025-1222 | Feb 20, 2025 |
Citrix Secure Access Client Mac Priv Escalation via Limited ModificationAn attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac |
|
| CVE-2025-1223 | Feb 20, 2025 |
Citrix Secure Access Client Mac: Privilege Escalation via Local ModificationsAn attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac |
|
| CVE-2024-12284 | Feb 20, 2025 |
Authenticated Privilege Escalation in NetScaler Console/AgentAuthenticated privilege escalation in NetScaler Console and NetScaler Agent allows. |
|
| CVE-2024-8534 | Nov 12, 2024 |
Citrix NetScaler ADC/Gateway RDP-induced memory corruption DoSMemory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled |
|
| CVE-2024-8535 | Nov 12, 2024 |
CVE-2024-8535: NetScaler ADC/Gateway Unauthorized Capability Escalation via KCDAccount Kerberos SSOAuthenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources |
|
| CVE-2024-8068 | Nov 12, 2024 |
Citrix Session Recording PrivEsc to NetworkService via AD AuthPrivilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain |
|
| CVE-2024-8069 | Nov 12, 2024 |
CVE-2024-8069: RCE in Citrix Session Recording via NetworkServiceLimited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server |
|
| CVE-2024-7889 | Sep 11, 2024 |
CVE-2024-7889 Local Priv Escal in Citrix Workspace App (Windows)Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
|
| CVE-2024-7890 | Sep 11, 2024 |
Low-Priv Escalation in Citrix Workspace app for Windows (CVE-2024-7890)Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
|
| CVE-2024-6677 | Jul 12, 2024 |
Privilege Escalation in uberAgent via Incorrect Permission ChecksPrivilege escalation in uberAgent |
|
| CVE-2024-6236 | Jul 10, 2024 |
DoS in Citrix NetScaler Console/Agent/SDXDenial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX |
And others... |
| CVE-2024-6148 | Jul 10, 2024 |
Citrix Workspace App: GACS Policy Bypass in HTML5Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5 |
|
| CVE-2024-6286 | Jul 10, 2024 |
Citrix Workspace App Windows LPE CVE-2024-6286Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
|
| CVE-2024-6151 | Jul 10, 2024 |
CVE-2024-6151: VDA Win LPE SYSTEM EscalationLocal Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows used by Citrix Virtual Apps and Desktops and Citrix DaaS |
|
| CVE-2024-6150 | Jul 10, 2024 |
Citrix Provisioning Server VM Availability Disruption (CVE-2024-6150)A non-admin user can cause short-term disruption in Target VM availability in Citrix Provisioning |
|
| CVE-2024-6149 | Jul 10, 2024 |
Redirection Attack in Citrix Workspace App for HTML5 (CVE-2024-6149)Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5 |
|
| CVE-2024-6235 | Jul 10, 2024 |
Citrix NetScaler Console Info Disclosure VulnerabilitySensitive information disclosure in NetScaler Console |
|
| CVE-2024-5492 | Jul 10, 2024 |
Open Redirect in NetScaler ADC & Gateway Allows Arbitrary URL RedirectionOpen redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScaler ADC and NetScaler Gateway |
|
| CVE-2024-5491 | Jul 10, 2024 |
CVE-2024-5491 DoS in Citrix NetScaler ADC/GatewayDenial of Service in NetScaler ADC and NetScaler Gateway in NetScaler |
|
| CVE-2024-5661 | Jun 13, 2024 |
CVE-2024-5661: DoS in XenServer 8 & Citrix Hypervisor 8.2 CU1 via Guest VMAn issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause the host to become slow and/or unresponsive. |
|
| CVE-2024-2049 | Mar 12, 2024 |
SSRF in Citrix SD-WAN 11.4.0-11.4.4.46: Implicit Management IP AccessServer-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 allows an attacker to disclose limited information from the appliance via Access to management IP. |
|
| CVE-2023-6184 | Jan 18, 2024 |
CVE-2023-6184: XSS in Citrix Session RecordingCross SiteScripting vulnerability in Citrix Session Recording allows attacker to perform Cross Site Scripting |
|
| CVE-2023-6549 | Jan 17, 2024 |
Citrix NetScaler ADC/Gateway OOB Buffer Read DoSImproper Restriction of Operations within the Bounds of a Memory Buffer in NetScaler ADC and NetScaler Gateway allows Unauthenticated Denial of Service and Out-Of-Bounds Memory Read |
|
| CVE-2023-6548 | Jan 17, 2024 |
NetScaler ADC/Gateway Code Injection RCE via Management InterfaceImproper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) remote code execution on Management Interface. |
|
| CVE-2023-4967 | Oct 27, 2023 |
DoS in Citrix NetScaler ADC & Gateway when Gateway ConfiguredDenial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA Virtual Server |
|
| CVE-2023-4966 | Oct 10, 2023 |
Citrix NetScaler ADC/Gateway Sensitive Info DisclosureSensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtualserver. |
|
| CVE-2023-3466 | Jul 19, 2023 |
Unknown: Reflected XSS Vulnerability (CVE-2023-3466)Reflected Cross-Site Scripting (XSS) |
|
| CVE-2023-3467 | Jul 19, 2023 |
Privilege Escalation to root via nsroot (CVE20233467)Privilege Escalation to root administrator (nsroot) |
|
| CVE-2023-3519 | Jul 19, 2023 |
CVE-2023-3519: Unauth RCE in Unknown ProductUnauthenticated remote code execution |
|
| CVE-2023-24492 | Jul 11, 2023 |
CVE-2023-24492: RCE via Malicious Link in Citrix Secure Access (Ubuntu)A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a victim user opens an attacker-crafted link and accepts further prompts. |
|
| CVE-2023-24489 | Jul 10, 2023 |
ShareFile Storage Zones RCE via Unauthenticated Remote AccessA vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zones controller. |
|
| CVE-2023-24490 | Jul 10, 2023 |
VMware Horizon VDA Exploit: Unauthorized Desktop LaunchUsers with only access to launch VDA applications can launch an unauthorized desktop |
|
| CVE-2023-24486 | Jul 10, 2023 |
Citrix Workspace Linux Session Hijack via Local UserA vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who is using the same computer from which the ICA session is launched. |
|
| CVE-2023-24487 | Jul 10, 2023 |
CVE-2023-24487: Arbitrary File Read in Citrix ADC & GatewayArbitrary file read in Citrix ADC and Citrix Gateway? |
|
| CVE-2023-24488 | Jul 10, 2023 |
CVE-2023-24488: XSS in Citrix ADC & GatewayCross site scripting vulnerability in Citrix ADC and Citrix Gateway? in allows and attacker to perform cross site scripting |
|
| CVE-2023-24483 | Feb 16, 2023 |
Citrix VDA Local Privilege Escalation to SYSTEMA vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to NT AUTHORITY\SYSTEM on a Citrix Virtual Apps and Desktops Windows VDA. |
|
| CVE-2023-24484 | Feb 16, 2023 |
Directory Traversal: Unauthorized Log File Write VulnerabilityA malicious user can cause log files to be written to a directory that they do not have permission to write to. |
|
| CVE-2023-24485 | Feb 16, 2023 |
Citrix Workspace App: System Privilege Escalation (CVE202324485)Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app. |
|
| CVE-2022-27507 | Jan 26, 2023 |
Authenticated DoS in Microsoft OutlookAuthenticated denial of service |
|
| CVE-2022-27508 | Jan 26, 2023 |
Unauthenticated DoS Vulnerability (CVE-2022-27508)Unauthenticated denial of service |
|
| CVE-2019-18177 | Dec 26, 2022 |
Citrix ADC/Gateway 13.0-58.30 Authenticated Info Disclosure via SSL VPNIn certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update. |
|
| CVE-2022-27518 | Dec 13, 2022 |
Unauthenticated Remote Arbitrary Code Execution (CVE-2022-27518)Unauthenticated remote arbitrary code execution |
|
| CVE-2022-27513 | Nov 08, 2022 |
RDP Takeover via Phishing MicrosoftRemote desktop takeover via phishing |
|