chiprook
← Security
SecuritySeptember 29, 2026, 15:01

Critical request smuggling flaw found in Citrix NetScaler

Citrix NetScaler ADC and Gateway contain an HTTP request smuggling vulnerability tracked as CVE-2026-88773 with a CVSS score of 9.3. Exploitation requires HTTP enabled and no authentication; CVE-2026-88771 and CVE-2026-88772 in the same CTX697096 update are being actively exploited.

Critical request smuggling flaw found in Citrix NetScaler
#Citrix#NetScaler
Read next
Security

CISA orders feds to patch exploited Citrix NetScaler flaws by Wednesday

Security

Two Unpatched Citrix NetScaler RCE Zero-Days Actively Exploited

Security

ZoomEye: Over 239,000 Citrix NetScaler Gateways Exposed Amid SAML Bypass

Security

What 239,000 Exposed NetScaler Instances Tell You About Remote Access Risk