Critical Citrix NetScaler vulnerability requires urgent patching for customer-managed systems
A severe vulnerability (CVE-2026-88771) affecting Citrix NetScaler ADC and Gateway products allows unauthenticated remote command execution. The Dutch National Cyber Security Centre (NCSC-NL) issued advisory NCSC-2026-0394, stating the flaw is already being exploited in the wild. The vulnerability impacts all NetScaler ADC and Gateway deployments and also affects Secure Private Access hybrid implementations using NetScaler instances. The advisory clarifies that customer-managed systems and hybrid deployments must be patched, while Citrix-managed cloud services are updated by the vendor. Affected users must upgrade to specified fixed versions immediately.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in