SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-88772

HIGH · CVSS 8.1 EPSS 1.30% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-27 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

Citrix NetScaler ADC and Gateway versions prior to 14.1-73.37 and 13.1-64.23 are vulnerable to a critical flaw that allows for Remote Code Execution or Denial of Service. Organizations using these affected products should prioritize patching to mitigate the risk of exploitation, as the severity of this vulnerability poses significant threats to system integrity and availability. Immediate action is essential for any enterprise relying on Citrix for application delivery and secure remote access.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-88772
Severity
HIGH
CVSS
8.1
EPSS
1.30%
Citrix

Original NVD Description

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service

Related CVEs

Other vulnerabilities affecting the same vendor(s)