CISA KEV August 2026: Citrix NetScaler CVE-2026-8452 and Five Legacy Flaws Now Actively Exploited
CISA added six vulnerabilities to its Known Exploited Vulnerabilities catalog on August 26, 2026, led by CVE-2026-8452 in Citrix NetScaler ADC and Gateway. Five older flaws across Red Hat Linux, Microsoft SQL Server, Ajax.NET Professional, and the Linux kernel were also confirmed as active attack paths. The batch illustrates that threat actors systematically sweep for unpatched assets years after disclosure.