CVE-2022-27518
Citrix Gateway, Citrix ADC
Published 13 Dec 2022 · updated 17 Jun 2026 · Analyzed
9.8 Critical · CVSS 3.1, NVD
Exploited in the wild
CISA added this to its Known Exploited Vulnerabilities catalog on 13 Dec 2022, with a remediation deadline of 3 Jan 2023 for US federal agencies.
Required action: Apply updates per vendor instructions.
Description
Unauthenticated remote arbitrary code execution
References
- support.citrix.com/article/CTX474995 · Vendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-27518 · US Government Resource