Skip to main content

CVE detail

CVE-2026-8451

Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetScaler Gateway is configured as a SAML IDP

CVSS 8.8 · HighBuzz score 47.91 public exploit repository references

Buzz score

Why this CVE is surfacing

Buzz score total 47.9

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 23.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 4.9
Mention score
23.0
9 evidence mentions in the snapshot
Diversity score
20.0
8 sources across 4 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
4.9
1 repos · best confidence 0.80
Best PoC traction
2
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
9
within the 30d window
Peak daily
2
highest bucket

Evidence

Source links by recency

Newest mentions first
9 source links · newest first
  • Linked URL: https://www.lupovis.io/lupovis-insights/ | Posted by noktec | 2 points | 0 comments

    communitynews.ycombinator.comJul 7, 2026, 8:20 AM
  • ixBleed" flaw has come under attack, which could leak risky corporate information. Citrix on June 30 took the wraps off CVE-2026-8451, the memory overread vulnerability in the company's Netscaler product line that received a CVSS score of 8.8. The high-severity flaw affects Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway d

    newswww.darkreading.comJul 6, 2026, 9:17 PM
  • 6th July – Threat Intelligence ReportCheck Point Research

    using a postal-service domain for credential theft. VULNERABILITIES AND PATCHES Oracle E-Business Suite is affected by CVE-2026-46817, a critical remote code execution flaw reportedly exploited against about 950 internet-exposed instances worldwide. Successful exploitation can give attackers control over ERP systems. Check Point IPS provides protectio

    vendorresearch.checkpoint.comJul 6, 2026, 12:01 PM
  • ulnerability and there are signs of in-the-wild exploitation already. The new memory overread vulnerability, tracked as CVE-2026-8451, was found by researchers from security firm watchTowr who published a detailed write-up showing how unauthenticated malformed requests can result in protected process memory data being leaked back in responses. The ori

    newswww.csoonline.comJul 3, 2026, 11:41 AM
  • Hackers are targeting NetScaler appliances using public PoC code to retrieve arbitrary memory content in the HTTP response. The post New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure appeared first on SecurityWeek .

    newswww.securityweek.comJul 2, 2026, 3:04 PM
  • Citrix urges customers to patch NetScaler after fixing six vulnerabilities, including the HTTP/2 Bomb flaw and a high-severity CitrixBleed-style information disclosure bug.

    newswww.securityweek.comJul 1, 2026, 11:20 AM
  • facilitate arbitrary file reads or trigger a denial-of-service (DoS) condition. The vulnerabilities are listed below - CVE-2026-8451 (CVSS score: 8.8) - An insufficient input validation

    newsthehackernews.comJul 1, 2026, 3:54 AM
  • Well, well, well - once again, the cat has dragged us in and spat us out. Today, we find ourselves questioning the reality we sit within. Must it be so predictable, and why us? “But watchTowr, what do you mean?” Well, if you’re here, you likely fit into one of the following categories: * A dear reader, * A group therapy accomplice * A Groundhog Day fan club member Why? Because we once again find ourselves talking about Citrix NetScalers. Yes, that’s right, we’ve found another excuse to cr

    newslabs.watchtowr.comJun 30, 2026, 7:35 PM
  • No excerpt available.

    Vendor Advisorysupport.citrix.comJun 30, 2026, 1:19 PM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

1 repository references · best confidence 0.80 · max 2 stars

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence