CVE-2019-11634Critical· 9.8▾ Hadal⚠ Exploited in the wildCitrix Workspace App before 1904 for Windows has Incorrect Access Control.
▾ Hadal zone — Critical and actively exploited (CISA KEV / 0day)
impact 53.9 · likelihood 1.6 · exploitation 25 · ransomware 5
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due May 3, 2022
Last analysed / modified upstream
8.0%
Added to the CISA catalog on Nov 3, 2021. Federal remediation due May 3, 2022. View catalog ↗
Citrix Workspace App before 1904 for Windows has Incorrect Access Control.
receiver = 4.9workspace < 1904Upgrade past the affected range:
workspace 1904Connected by shared product, vendor, weakness, or advisory.
CVE-2026-19490Critical· 9.8Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.
CVE-2019-19781Critical· 9.8An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0
CVE-2023-3519Critical· 9.8Unauthenticated remote code execution
CVE-2025-5777High· 7.5Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
CVE-2023-4966Critical· 9.4Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.
CVE-2024-40766Critical· 9.8An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash