# Citrix XenServer patches multiple vulnerabilities

Published: 2026-07-29 · Severity: medium
Canonical: https://vorant.io/reports/e9e1a301-8f2a-56a0-9f78-ad609ed616e4/citrix-xenserver-patches-multiple-vulnerabilities

> CERT-FR advisory details multiple Citrix XenServer flaws allowing remote code execution and denial of service, patched via CTX696836.

CERT-FR issued an advisory covering multiple vulnerabilities in Citrix XenServer versions 8.4 and 9 that lack the latest security patch. The flaws, tracked under seven CVEs, allow attackers to achieve remote arbitrary code execution, remote denial of service, and an unspecified security impact not detailed by the vendor.

Citrix addressed the issues in security bulletin CTX696836, published 28 July 2026. No active exploitation is reported; the advisory is a standard vulnerability disclosure and patch notice. Affected organizations should apply the vendor's correctifs as soon as possible to remediate the RCE and DoS conditions.

## Mentioned in this report

- Vulnerabilities: CVE-2026-42492, CVE-2026-62428, CVE-2026-62431, CVE-2026-62432, CVE-2026-62434, CVE-2026-62435, CVE-2026-62436

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0941

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/e9e1a301-8f2a-56a0-9f78-ad609ed616e4/citrix-xenserver-patches-multiple-vulnerabilities.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
