Urgent Alert: NetScaler bug CVE-2026-3055 probed by attackers could leak sensitive data

2026-03-30T02:51:47Z5f53e681830281d5daafd484d30bf0d365c6ff2e6b20b176229319e3f87318b6
ADCAMPAppleBIG-IPCISACVE-2025-53521CVE-2026-3055CVE-2026-4681CitrixF5FlexPLMGatewayKnown-Exploited-VulnerabilitiesNetScalerPTCShinyHunters','European-Commission','Handala','phishing','AITM',Windchillactive-probingcritical-vulnerabilitydata-leakiOSlock-screen-warningmemory-overreadpatchingweb-exploits

What happened

Security Affairs reports attackers are actively probing a critical Citrix NetScaler ADC/Gateway memory overread vulnerability (CVE-2026-3055, CVSS 9.3) that can leak sensitive data; Citrix released updates addressing two NetScaler flaws. The feed also highlights other high-risk issues and incidents: an unpatched PTC Windchill/FlexPLM critical flaw (CVE-2026-4681, CVSS 10.0) warned by CISA/BSI, an F5 BIG‑IP AMP flaw (CVE-2025-53521) added to CISA’s KEV catalog, Apple lock‑screen warnings for active web exploits against outdated iOS devices, and several breach/attack events (ShinyHunters claim,

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
5f53e681830281d5daafd484d30bf0d365c6ff2e6b20b176229319e3f87318b6
Enrichment time
2026-03-30T02:51:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.