07/28/2026
🚨A high-severity security update has been released for XenServer 8.4 and XenServer 9, addressing multiple vulnerabilities that could allow a malicious privileged user within a guest VM to compromise or crash the host.
The bulletin covers seven CVEs affecting supported XenServer deployments, including CVE-2026-42492 (XenServer 9 only) and six additional vulnerabilities impacting both XenServer 8.4 and XenServer 9.
Organizations running affected versions should review the security bulletin and apply the recommended updates as soon as possible to reduce the risk of host compromise or service disruption.
View the full bulletin for affected versions, CVE details, and remediation guidance: https://bit.ly/4fzlT4X