# Citrix Patches Flaws in Access Clients, XenCenter

Published: 2026-07-15 · Severity: medium
Canonical: https://vorant.io/reports/2076b8a8-bab9-501b-9eeb-6a072dac0b09/citrix-patches-flaws-in-access-clients-xencenter

> ANSSI advisory details multiple Citrix vulnerabilities allowing privilege escalation, data confidentiality breach, and security policy bypass across several products.

The French national cybersecurity agency (CERT-FR) issued an advisory covering multiple vulnerabilities in Citrix products, including Endpoint Analysis Client, Secure Access Client, XenCenter SDK client, and XenCenter itself. The flaws could allow an attacker to escalate privileges, compromise data confidentiality, or bypass security policies, though no active exploitation is reported.

Citrix has released fixed versions for all affected products: Endpoint Analysis Client 26.5.1.7+, Secure Access Client 26.6.1.20+, XenCenter SDK client 26.15.0+, and XenCenter 2026.4.0+. Three CVEs are associated with this advisory, tracked across two Citrix security bulletins (CTX696734 and CTX696811). Organizations using these products should apply the vendor patches referenced in the official Citrix documentation.

## Mentioned in this report

- Vulnerabilities: CVE-2026-42491, CVE-2026-53565, CVE-2026-53566

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0885

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/2076b8a8-bab9-501b-9eeb-6a072dac0b09/citrix-patches-flaws-in-access-clients-xencenter.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
