Security

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-88779 Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding…

Read at CISA Cybersecurity Advisories

CVE-2026-88779Exploited

Severity
8.7 High · CVSS 4.0 · NetScaler
Exploited
Since 2026-10-04 (CISA)
CISA deadline
2026-10-07
Published
NetScaler ADC

Affected: before 14.1-73.41; before 13.1-64.28; before 14.1-73.41 FIPS; before 13.1-37.282

Fixed: 14.1-73.41; 13.1-64.28; 14.1-73.41 FIPS; 13.1-37.282

NetScaler Gateway

Affected: before 14.1-73.41; before 13.1-64.28

Fixed: 14.1-73.41; 13.1-64.28

support.citrix.com · CVE record · NVD