CVE-2018-10653: Citrix XenMobile Server

Critical severity, CVSS 9.8. EPSS: 6.8% chance of exploitation in the next 30 days.

There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.

Affected products

  • Citrix XenMobile Server: version 10.8 only; version 10.7 only

Published 2018-05-23. Last modified 2026-06-17.