Citrix Xenserver vulnerabilities
228 known vulnerabilities affecting citrix/xenserver.
Total CVEs
228
CISA KEV
11
actively exploited
Public exploits
23
Exploited in wild
11
Severity breakdown
CRITICAL42HIGH82MEDIUM93LOW11
Vulnerabilities
Page 10 of 12
CVE-2014-8495MEDIUMCVSS 5.0
CVE-2014-8495 [MEDIUM] Citrix Security Bulletin CTX200260
Citrix Security Bulletin CTX200260
CVE References: CVE-2014-8495, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2006-6573MEDIUMCVSS 6.0
CVE-2006-6573 [MEDIUM] Citrix Security Bulletin CTX111695
Citrix Security Bulletin CTX111695
CVE References: CVE-2006-6573, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2020-8274MEDIUMCVSS 6.5
CVE-2020-8274 [MEDIUM] CWE-284 Citrix Secure Mail for Android Security Update
Citrix Secure Mail for Android Security Update
of Problem Vulnerabilities have been discovered in Citrix Secure Mail for Android that could allow unauthorised access to data within Citrix Secure Mail. These vulnerabilities have the following identifiers: CVE ID Description Vulnerability Type Pre-conditions CVE-2020-8274 Unauthenticated access to read data stored within Secure Mail CWE-94: Improper Control of Generatio
citrix
CVE-2016-5109MEDIUMCVSS 4.3
CVE-2016-5109 [MEDIUM] Citrix Security Bulletin CTX214006
Citrix Security Bulletin CTX214006
CVE References: CVE-2016-5109, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2025-1222MEDIUMCVSS 5.8
CVE-2025-1222 [MEDIUM] CWE-427 Citrix Secure Access Client for Mac Security Bulletin for CVE-2025-1222 and CVE-2025-1223
Citrix Secure Access Client for Mac Security Bulletin for CVE-2025-1222 and CVE-2025-1223
of Problem Vulnerabilities have been discovered in Citrix Secure Access Client for Mac. Refer to below for further details:
CVE References: CVE-2025-1222, CVE-2025-1223
Affected Products: XenServer
Severity: Medium
CVSS Score: 5.9
Remediation:
Cloud Software Group strongly urges custom
citrix
CVE-2008-2299MEDIUMCVSS 5.0
CVE-2008-2299 [MEDIUM] Citrix Security Bulletin CTX114893
Citrix Security Bulletin CTX114893
CVE References: CVE-2008-2299, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2014-1899MEDIUMCVSS 4.3
CVE-2014-1899 [MEDIUM] Citrix Security Bulletin CTX140291
Citrix Security Bulletin CTX140291
CVE References: CVE-2014-1899, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2010-4515MEDIUMCVSS 4.3
CVE-2010-4515 [MEDIUM] Citrix Security Bulletin CTX127541
Citrix Security Bulletin CTX127541
CVE References: CVE-2010-4515, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2014-4700MEDIUMCVSS 4.9
CVE-2014-4700 [MEDIUM] Citrix Security Bulletin CTX139591
Citrix Security Bulletin CTX139591
CVE References: CVE-2014-4700, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2005-3971MEDIUMCVSS 4.3
CVE-2005-3971 [MEDIUM] Citrix Security Bulletin CTX108208
Citrix Security Bulletin CTX108208
CVE References: CVE-2005-3971, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2013-6938MEDIUMCVSS 5.0
CVE-2013-6938 [MEDIUM] Citrix Security Bulletin CTX140113
Citrix Security Bulletin CTX140113
CVE References: CVE-2013-6938, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2013-2756MEDIUMCVSS 5.0
CVE-2013-2756 [MEDIUM] Citrix Security Bulletin CTX135815
Citrix Security Bulletin CTX135815
CVE References: CVE-2013-2756, CVE-2013-2757, CVE-2013-2758, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2018-18517MEDIUMCVSS 4.8
CVE-2018-18517 [MEDIUM] Citrix Security Bulletin CTX239002
Citrix Security Bulletin CTX239002
CVE References: CVE-2018-18517, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-27503MEDIUMCVSS 6.1
CVE-2022-27503 [MEDIUM] CWE-79 Citrix StoreFront Security Bulletin for CVE-2022-27503
Citrix StoreFront Security Bulletin for CVE-2022-27503
Type Pre-requisites CVE-2022-27503 Reflected Cross Site Scripting (XSS) CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') A victim user must have a current session on a StoreFront that has been configured to use SAML authentication The issue affects the following supported versions of Citrix StoreFront: Citrix Sto
citrix
CVE-2014-8580MEDIUMCVSS 4.9
CVE-2014-8580 [MEDIUM] CVE-2014-8580 - Authentication Flaw in Citrix NetScaler Application Delivery Controller and NetScaler Gateway Could Result in Unauthorised Access to Network Resources
CVE-2014-8580 - Authentication Flaw in Citrix NetScaler Application Delivery Controller and NetScaler Gateway Could Result in Unauthorised Access to Network Resources
of Problem An authentication flaw has been identified in certain configurations of Citrix NetScaler ADC and NetScaler Gateway that could allow
citrix
CVE-2012-6314MEDIUMCVSS 5.0
CVE-2012-6314 [MEDIUM] Citrix Security Bulletin CTX135813
Citrix Security Bulletin CTX135813
CVE References: CVE-2012-6314, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-27505MEDIUMCVSS 6.1
CVE-2022-27505 [MEDIUM] CWE-79 Citrix SD-WAN Security Bulletin for CVE-2022-27505 and CVE-2022-27506
Citrix SD-WAN Security Bulletin for CVE-2022-27505 and CVE-2022-27506
CWE
CVE References: CVE-2022-27505, CVE-2022-27506
Affected Products: Citrix SD-WAN, SD-WAN, XenServer
Severity: High
Remediation:
as soon as possible. This issue has been addressed in the following supported Citrix SD-WAN versions: Citrix SD-WAN Standard/Premium Edition Appliance versions 11.4.3a and above CVE-2022-27506: C
citrix
CVE-2008-6830MEDIUMCVSS 4.0
CVE-2008-6830 [MEDIUM] Citrix Security Bulletin CTX118768
Citrix Security Bulletin CTX118768
CVE References: CVE-2008-6830, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2019-6485MEDIUMCVSS 5.9
CVE-2019-6485 [MEDIUM] Citrix Security Bulletin CTX240139
Citrix Security Bulletin CTX240139
CVE References: CVE-2019-6485, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2002-2426MEDIUMCVSS 4.3
CVE-2002-2426 [MEDIUM] Citrix Security Bulletin CTX115245
Citrix Security Bulletin CTX115245
CVE References: CVE-2002-2426, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix