CVE-2026-3055 — Citrix NetScaler Out-of-Bounds Read Vulnerability
Citrix NetScaler ADC (formerly Citrix ADC), NetScaler Gateway (formerly Citrix Gateway) and NetScaler ADC FIPS and NDcPP contain an out-of-bounds reads vulnerability when configured as a SAML IDP leading to memory overread.
- Severity
- critical
- Product
- Citrix NetScaler
- Published
- 2026-03-30
- EPSS
- 0.872
- CISA KEV
- Known exploited
- Ransomware
- Known campaign use
References and validation
- https://github.com/search?q=CVE-2026-3055&type=repositories
- https://nvd.nist.gov/vuln/detail/CVE-2026-3055
Entries are refreshed from CISA KEV and FIRST EPSS. Validate applicability before testing.