CVE-2026-88779
Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS, and before 13.1-37.282; Gateway: before 14.1-73.41 and before 13.1-64.28.
- Published Oct 4, 2026
- CVSS 8.7 high
- 0.5% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
- A fix is available
Affected software
In the news
- CISA flags new exploited NetScaler flaw as attackers crash appliances (CVE-2026-88779) Help Net Security ·
- ⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests The Hacker News ·
- Citrix security advisory (AV26-996) Canadian Centre for Cyber Security ·
- New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline The Hacker News ·
- Exploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days Earlier SecurityWeek ·
- Vulnerability in Citrix NetScaler ADC and Gateway CERT-FR ·
- Citrix patches NetScaler SAML zero-day exploited in attacks BleepingComputer ·
- CISA Adds One Known Exploited Vulnerability to Catalog CISA ·