Citrix NetScaler security snafus get even worse amid more 0-day reports
The new vuln, CVE-2026-88779, is a memory overflow bug that leads to denial of service
Citrix's NetScaler appliances are facing increasing security threats after three more zero-day vulnerabilities were discovered and exploited. The latest issue, CVE-2026-88779, is a memory overflow bug that causes denial of service attacks, affecting NetScaler ADC and Gateway appliances configured as SAML service or identity providers.
Citrix confirmed they were investigating the issue late Friday and released a security advisory with patches on Saturday. WatchTowr researchers suspect this vulnerability has been used to crash machines faster, exploiting another recent Citrix bug. Citrix urges customers to apply the patch as soon as possible, particularly for appliances with SAML authentication enabled.
Written by urgent.news from The Register's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.