CVE-2026-88779

Published Oct 4, 2026

Last updated an hour ago

Overview

Description
Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS, and before 13.1-37.282; Gateway: before 14.1-73.41 and before 13.1-64.28.
Source
50a63c94-1ea7-4568-8c11-eb79e7c5a2b5
NVD status
Received

Risk scores

CVSS 4.0

Type
Secondary
Base score
8.7
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
HIGH

Known exploits

Data from CISA

Vulnerability name
Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Exploit added on
Oct 4, 2026
Exploit action due
Oct 7, 2026
Required action
Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-119

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

8

  1. 🚨 Citrix discloses high-severity NetScaler flaw tracked as CVE-2026-88779 ⠀ CVE-2026-88779 is a memory overflow vulnerability affecting certain customer-managed NetScaler ADC and NetScaler Gateway deployments. Successful exploitation can cause a denial-of-service condition.

    @DarkWebInformer

    4 Oct 2026

    2047 Impressions

    0 Retweets

    3 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 CVE-2026-88779 — HIGH — actively exploited per CISA KEV Citrix NetScaler CVSS 8.7 | EPSS 0% #Citrix #CVE https://t.co/wr9pfSFciA

    @threatpodium

    4 Oct 2026

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Citrix NetScaler CVE-2026-88779 Exploited in the Wild - https://t.co/lCiEkVRMZl

    @moton

    4 Oct 2026

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🔴 Actively exploited: Citrix NetScaler ADC and Gateway: CISA confirms active exploitation of CVE-2026-88779 CVE-2026-88779 A high-severity flaw (CVSS 8.7) in Citrix NetScaler ADC and NetScaler Gateway is being actively exploited.… #CVE #Citrix #infosec https://t.co/y1XoiHW

    @Orbitaley

    4 Oct 2026

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. NØØT Security Alerts Classification: High CVE: CVE-2026-88779 Product: See CISA advisory Summary: The advisory involves CVE-2026-88779. Priority should be given to identifying exposed systems and validating whether they are actually affected. Evidence: active exploitation;

    @Python_s_

    4 Oct 2026

    39 Impressions

    0 Retweets

    2 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  6. 🔴 NetScaler ADC and NetScaler Gateway, Memory Overflow (Denial of Service), #CVE-2026-88779, HIGH -DC-Oct2026-2716 https://t.co/Jn4friAzZv

    @dailycve

    4 Oct 2026

    21 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. 🚨 CRITICAL: CVE-2026-88779 in Citrix NetScaler ADC/Gateway - Memory buffer vulnerability enables DoS attacks. CISA KEV listed. Patch immediately. #CVE #PatchNow #ThreatIntel https://t.co/RYz5SLLXzq

    @DFIR_Lab

    4 Oct 2026

    79 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  8. ‼️#Citrix: aggiornamenti di sicurezza sanano la CVE-2026-88779 per la quale sono stati osservati tentativi di #Exploitation Rischio: 🔴 Tipologia: 🔸 Denial of Service 🔗 https://t.co/oq6nLFS7rx 🔄️ Aggiornamenti disponibili 🔄️ https://t.co/2rxsDXduW0

    @csirt_it

    4 Oct 2026

    262 Impressions

    1 Retweet

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. Citrix NetScaler admins: patch again. CVE-2026-88779 is a new CVSS 8.7 memory overflow affecting customer-managed NetScaler ADC / Gateway deployments using SAML with Gateway or AAA. Citrix says targeted attacks have already been observed against unmitigated systems. Affected:

    @cr3ghost

    4 Oct 2026

    519 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. ⚠️ Mise à jour Citrix NetScaler : le problème SAML signalé hier est désormais CVE-2026-88779 (CVSS 8,7). Citrix confirme un DoS et publie les correctifs 14.1-73.41 / 13.1-64.28. À déployer rapidement. #Cyber #Citrix

    @TwitGri

    4 Oct 2026

    122 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. Cloud Software Group published a NetScaler security bulletin for CVE-2026-88779 on October 3, 2026 Pacific time, according to the bulletin changelog, covering customer-managed Citrix NetScaler ADC and NetScaler Gateway. The issue is a memory-overflow vulnerability that can lead

    @2logics

    4 Oct 2026

    168 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. Citrix published CTX697174 on 3 October PST for CVE-2026-88779. This is the bulletin the 2 October SAML note said was planned, not a rewrite of CTX697096. It is a memory overflow, CWE-119, CVSS v4.0 8.7, leading to denial of service. The precondition is NetScaler ADC or Gateway

    @Breachrr

    4 Oct 2026

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. 🚨 EXPLOITED IN THE WILD: Citrix NetScaler CVE-2026-88779 is being targeted in attacks against SAML-configured deployments. The high-severity flaw (CVSS 8.7) is a memory-overflow vulnerability that can cause denial of service. ⚠️ Affected when NetScaler ADC/Gateway is

    @ThreatWire_

    4 Oct 2026

    218 Impressions

    1 Retweet

    6 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. Citrix NetScaler CVE-2026-88779 is exploited in the wild against NetScaler SAML authentication setups. Upgrade to 14.1-73.41 now. #Citrix #NetScaler #CVE202688779 #SAML #ActivelyExploited #DoS #Vulnerability https://t.co/pOgTFFvqH4

    @Daily_CyberSec

    4 Oct 2026

    581 Impressions

    0 Retweets

    7 Likes

    1 Bookmark

    0 Replies

    0 Quotes