Critical
NetScaler command execution is CVE-2026-88771
Citrix bulletin CTX697096 confirms unauthenticated command execution on NetScaler in the default configuration. CISA listed CVE-2026-88771 on 27 September 2026. A later alert with no CVE id is this bulletin, not a new unnumbered bug.
Published 1h ago
High
NetScaler SAML memory overflow is being exploited
CVE-2026-88779 is in the CISA KEV catalog. Citrix limits it to SAML service-provider or identity-provider configurations and describes denial of service. Earlier NetScaler fixes do not close it.
Published 3h ago
HighActive ExploitationKEV0-day
NetScaler SAML memory overflow
DoS
Published 2d ago
CriticalActive ExploitationKEV0-day
NetScaler unauthenticated command execution
RCE
Published 8d ago