Security1 publisher2 min readPublished
Build number and SAML settings decide exposure to exploited NetScaler flaw CVE-2026-19490
Exposure to CVE-2026-19490, a CVSS 9.8 NetScaler bypass CISA lists as exploited, depends on each appliance's exact build and SAML setup. Older builds qualify with any Gateway or AAA virtual server, while later builds short of the fix also need a SAML action configured.
The Watch · Security desk

What happened
- CISA's catalog entry, added September 9, 2026, marks forensic triage as required, three weeks after Citrix published its bulletin on August 19.
- Where the conditions are met, the flaw is reachable over the network with no prior privileges and no user interaction.
- The fixed builds are 14.1-73.32, 13.1-63.21, 14.1-73.32 FIPS, and 13.1-37.277 for the 13.1 FIPS and NDcPP trains.
- Secure Private Access Hybrid deployments on customer-managed NetScaler are in scope, and Cloud Software Group says it updates Citrix-managed cloud services and Adaptive Authentication itself.
- Horizon3.ai released a NodeZero Rapid Response test for the flaw on September 28, 2026, pitched at validating exposure and verifying remediation.
Compiled by The WatchSomething wrong?How this is made
Why it matters
- decision Patch order has to be set box by box from the full build string and the Gateway, AAA and SAML configuration, because the release train alone does not separate exposed appliances from the rest.
- constraint With no workaround in Citrix's bulletin, every appliance inside the conditions stays reachable until it runs the fixed build for its train.
- exposure Patching does not end the incident: Horizon3.ai says a clean retest confirms the fix but cannot show whether the appliance was compromised before it.
The SAML cutoffs are at 14.1-43.56, 13.1-61.28 and 14.1-66.68-FIPS [7]. On 14.1-43.55 and earlier, or 13.1-61.27 and earlier, a Gateway or AAA virtual server configuration is enough on its own to meet Citrix's stated precondition [6]. Citrix gives 13.1 FIPS the same broad condition [8]. These conditions apply only to builds below the fixed versions [18].
Gateway covers four roles: SSL VPN, ICA Proxy, CVPN and RDP Proxy. An AAA virtual server qualifies on its own [5]. An ADC with none of those configured falls outside the stated conditions on any build [1][5].
That means two appliances on the 14.1 train can land on opposite sides. One at 14.1-43.55 running SSL VPN is in scope [5][6]. The other has been upgraded past 14.1-43.56 but not to the fix, and runs the same VPN with no SAML action. It is outside Citrix's stated precondition [7][18].
Citrix has stated the condition that clears the second box but has not explained it. According to Horizon3.ai, the bulletin does not describe how the exploit works beyond classifying it as CWE-288, authentication bypass using an alternate path or channel [4][10]. Horizon3.ai tells teams not to assume a particular request path or post-bypass level of access [10]. Removing a SAML action from a later build to get outside the precondition assumes Citrix's condition holds for an exploit path that has not been made public [7][10].
The public record consists of the build matrix, the fixed builds and the KEV listing [6][7][11][3]. Apart from that listing, Horizon3.ai's write-up does not say who is exploiting the flaw or how many appliances were hit. On this record the bug cannot be tied to a known actor or a sustained campaign [3].
What to watch
- A Citrix or CISA description of the request path or post-bypass access, the evidence needed to judge whether the SAML condition holds as a boundary.
- Attribution of the exploitation behind the September 9 KEV listing to a named actor or campaign.
- Any revision by Citrix to the build-specific preconditions or the fixed-build list for CVE-2026-19490.