OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-88771

CRITICAL · CVSS 9.8 EPSS 1.08%

Source: NVD + CISA KEV + EPSS · Published 2026-09-27 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

An improper input validation vulnerability in Citrix NetScaler ADC and Gateway allows unauthenticated attackers to execute arbitrary commands on affected versions prior to 14.1-73.37 and 13.1-64.23. This critical flaw poses a significant risk to organizations using these products, as it could lead to unauthorized access and potential system compromise. Organizations utilizing Citrix NetScaler ADC and Gateway should prioritize immediate patching to mitigate this severe threat.

CVE
CVE-2026-88771
Severity
CRITICAL
CVSS
9.8
EPSS
1.08%
Citrix

Original NVD Description

Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.

Related CVEs

Other vulnerabilities affecting the same vendor(s)