Citrix confirms two NetScaler RCE zero-days exploited in attacks
Executive Summary
Citrix has confirmed that two critical NetScaler remote code execution vulnerabilities, CVE‑2026‑88771 and CVE‑2026‑88772, are actively being exploited in attacks. The company has released security updates to patch the flaws and urged users to apply them immediately to mitigate the risk.
Intelligence Metadata - Source Publisher: Bleeping Computer - Published Date: 2026-09-27T16:02:37+00:00 - Category: threat-intel
Original Description: Citrix has confirmed that two critical NetScaler remote code execution vulnerabilities, tracked as CVE-2026-88771 and CVE-2026-88772, are being exploited in attacks and that it has released security updates to fix the flaws. [...]
"When you meet someone better than yourself, turn your thoughts to becoming his equal. When you meet someone not as good as you are, look within and examine your own self."
— Confucius