Citrix Virtual Apps and Desktops 1912 · Version Status
Citrix Virtual Apps and Desktops 1912 End of Life Date
Citrix Virtual Apps and Desktops 1912 end-of-life date, support status, and CVE risk. Data from endoflife.date and official vendor documentation.
⚠
Citrix Virtual Apps and Desktops 1912 is past end of life. Standard support ended December 18, 2024. Patches continue until December 18, 2029 only under Citrix Extended Lifecycle Support, a paid programme — if you are not covered by it, this version is unpatched today.
EOL Date
Dec 18, 2024
599 days past EOL
Latest Release
1912 CU10
LTS release
Release Date
Dec 18, 2019
Citrix Virtual Apps and Desktops 1912 series
Extended Support
Dec 18, 2029
Citrix Extended Lifecycle Support · paid
Lifecycle detail
Citrix Virtual Apps and Desktops 1912 was released on December 18, 2019 and support ended on December 18, 2024 — a supported lifespan of 5 years, in line with the 5 years median for Citrix Virtual Apps and Desktops LTS releases. It was a long-term support (LTS) release, so it received a longer patch window than the interim releases around it. The last patch it will ever receive is 1912 CU10, published November 25, 2024 — 23 days before support ended. It has been without security patches for 1 year and 8 months. 4 newer Citrix Virtual Apps and Desktops releases have shipped since.
Attack Surface
10/30 Medium tier
CISA KEV Exposure
0/20 Not in KEV
Extended Support
0/10 Available
EOL Risk Score™ — proprietary methodology by endoflife.ai. Factors: EOL recency, attack surface breadth, CISA KEV catalog presence, extended support availability. Updated at every build.
Methodology → ·
View score card →
Extended Support
Extended Citrix Virtual Apps and Desktops 1912 support is available
Commercial vendors offer security patches beyond EOL. Compare your options.
Compare Options →
All Citrix Virtual Apps and Desktops Versions
| Version | Latest | EOL Date | Status |
| XenDesktop 7.15 LTS |
7.15 CU9 |
Aug 15, 2022 |
EOL |
| → 1912 LTS |
1912 CU10 |
Dec 18, 2024 |
EOL |
| 2003 |
2003 |
Sep 26, 2021 |
EOL |
| 2006 |
2006 |
Dec 17, 2021 |
EOL |
| 2009 |
2009 |
Mar 29, 2022 |
EOL |
| 2012 |
2012 |
Jun 14, 2022 |
EOL |
| 2103 |
2103 |
Sep 17, 2022 |
EOL |
| 2106 |
2106 |
Dec 16, 2022 |
EOL |
What does Citrix Virtual Apps and Desktops 1912 end of life mean?
When Citrix Virtual Apps and Desktops 1912 reaches end of life, the maintainers stop issuing security patches for this version. CVEs discovered after the EOL date are publicly disclosed on the National Vulnerability Database with no patch available. Exploit code frequently appears on GitHub within days of disclosure.
The CVE blind spot: Most vulnerability scanners check for known CVEs but do not flag the ongoing accumulation of unpatched vulnerabilities in EOL software versions. Running Citrix Virtual Apps and Desktops 1912 past its EOL date creates a permanently growing attack surface that standard security tooling will not surface.
Migrate to Citrix Virtual Apps and Desktops 2603 or implement compensating controls — network segmentation, enhanced monitoring, restricted access — while migration is underway.
Frequently Asked Questions
When does Citrix Virtual Apps and Desktops 1912 reach end of life?
Citrix Virtual Apps and Desktops 1912 reached end of life on December 18, 2024. This version is no longer receiving security patches.
Is Citrix Virtual Apps and Desktops 1912 still supported?
No. Citrix Virtual Apps and Desktops 1912 reached end of life on December 18, 2024 and is no longer receiving security patches.
What should I upgrade to from Citrix Virtual Apps and Desktops 1912?
The recommended upgrade from Citrix Virtual Apps and Desktops 1912 is
Citrix Virtual Apps and Desktops 2603 — the latest actively supported version. Check the
Citrix Virtual Apps and Desktops full timeline for all supported versions.
What are the security risks of running Citrix Virtual Apps and Desktops 1912 past EOL?
When Citrix Virtual Apps and Desktops 1912 reaches end of life, the maintainers stop issuing security patches. Any CVEs disclosed after the EOL date accumulate with no remediation path. Most vulnerability scanners do not flag this — it is the CVE blind spot. Organizations running EOL Citrix Virtual Apps and Desktops should migrate immediately or implement compensating controls.