Patched Citrix NetScaler Appliances Are Crashing on Their Own, and Nobody’s Sure Why Yet
Citrix customers who rushed to install the emergency 14.1-73.37 build for two actively exploited NetScaler zero-days are now reporting repeated appliance reboots triggered by malformed SAML traffic. Citrix...
Citrix Rushes Emergency Patches as Hackers Actively Exploit NetScaler SAML Zero-Day
Citrix has shipped emergency fixes for CVE-2026-88779, a memory-overflow flaw in NetScaler ADC and Gateway's SAML components that attackers are actively exploiting to knock appliances offline. Administrators running...
Researchers Warn of Two More Unpatched NetScaler Zero-Days Already Under Attack
Security firm watchTowr says it has uncovered two additional, undisclosed remote-code-execution vulnerabilities in Citrix NetScaler during forensic investigations, and that both appear to have been exploited in real-world...
Citrix NetScaler Zero-Days Under Active Attack: Google Uncovers Hidden Web Shell Campaign
Google's threat intelligence team says attackers have been exploiting two critical, now-patched Citrix NetScaler zero-days since early September to plant a stealthy PHP web shell and pivot deep...
CISA Adds Exploited Citrix NetScaler Authentication Bypass to Urgent Fix List
CISA has added CVE-2026-19490, a critical Citrix NetScaler authentication bypass, to its Known Exploited Vulnerabilities catalog. Internet-facing ADC and Gateway deployments supporting remote access should apply Citrix updates...
CISA Orders Rapid Action as Citrix NetScaler Flaw Is Exploited in the Wild
CISA has placed CVE-2026-8452 in its Known Exploited Vulnerabilities catalog following confirmed attacks against Citrix NetScaler products. The memory-safety flaw can disrupt critical gateway services, and organizations should...