NetScaler CVE-2026-19490 enters KEV: check Gateway, AAA and SAML exposure

Published 10 Sep 2026 · Severity: critical

CISA confirmed exploitation by adding CVE-2026-19490 to KEV on 9 September. This authentication bypass requires particular Gateway or AAA configurations, with SAML requirements depending on the release. Prioritise exposed appliances, validate configuration and upgrade; do not assume every NetScaler is equally exposed.