Discoveries of Several Critical “Citrix NetScaler” Vulnerabilities

Citrix has released security updates that address multiple critical vulnerabilities in “NetScaler ADC” and “NetScaler Gateway”. Two of them – CVE-2026-88771 and CVE-2026-88772 – could allow an attacker to perform remote code execution. CVE-2026-88771 also affects devices with default configurations – no additional features need to be enabled for exploitation. Meanwhile, CVE-2026-88772 pertains to systems with DTLS enabled; in the “VPN vServer” configuration, it is enabled by default unless explicitly disabled. Organizations are urged to verify their versions and install the appropriate security updates as soon as possible: these vulnerabilities also affect “NetScaler” devices used in “Secure Private Access Hybrid” solutions. https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096&articleTitle=Citrix_NetScaler_ADC_and_Citrix_NetScaler_Gateway_Security_Bulletin_for_CVE_2026_88771_CVE_2026_88772_CVE_2026_88773_CVE_2026_88774_CVE_2026_88775_CVE_2026_88776_CVE_2026_88777_and_CVE_2026_88778

This article was collected and archived by Digital Sovereignty Watch from an institutional or public source relevant to digital sovereignty, technology policy, cybersecurity, cloud services, artificial intelligence or European regulation.

Read original source