Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler
References
| Link | Resource |
|---|---|
| https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-06-30 13:17
Updated : 2026-07-02 16:55
NVD link : CVE-2026-13474
Mitre link : CVE-2026-13474
CVE.ORG link : CVE-2026-13474
JSON object : View
Products Affected
citrix
- netscaler_gateway
- netscaler_application_delivery_controller
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
