Skip to content
THREATWIRE

Index

Search

Search the public record. Drafts and scheduled notes are not included.

Critical

threats

NetScaler command execution is CVE-2026-88771

Citrix bulletin CTX697096 confirms unauthenticated command execution on NetScaler in the default configuration. CISA listed CVE-2026-88771 on 27 September 2026. A later alert with no CVE id is this bulletin, not a new unnumbered bug.

Published 1h ago

High

threats

NetScaler SAML memory overflow is being exploited

CVE-2026-88779 is in the CISA KEV catalog. Citrix limits it to SAML service-provider or identity-provider configurations and describes denial of service. Earlier NetScaler fixes do not close it.

Published 3h ago

HighActive ExploitationKEV0-day

CVE-2026-88779

NetScaler SAML memory overflow

DoS

Published 2d ago

CriticalActive ExploitationKEV0-day

CVE-2026-88771

NetScaler unauthenticated command execution

RCE

Published 8d ago