chiprook
← Security
SecurityOctober 4, 2026, 11:20

CVE-2026-88773 in Citrix NetScaler: a patch plan for FIPS and NDcPP

Citrix bulletin CTX697096 fixes eight flaws in NetScaler ADC and Gateway, including CVE-2026-88773 rated CVSS 9.3, which needs no authentication and only HTTP enabled. Fixed builds are 14.1-73.37, 13.1-64.23, 14.1-73.37 FIPS and 13.1-37.279 for FIPS with NDcPP. NCSC-NL reports observed exploitation of CVE-2026-88771 and CVE-2026-88772, both rated 9.5.

CVE-2026-88773 in Citrix NetScaler: a patch plan for FIPS and NDcPP
#Citrix#NetScaler
Read next
Security

CISA orders feds to patch exploited Citrix NetScaler flaws by Wednesday

Security

CVE-2026-88774 in Citrix NetScaler: policy bypass via URL expressions

Security

CVE-2026-8452 in Citrix NetScaler: SAML parsing overflow leads to pre-auth RCE

Security

Exploit details for Citrix NetScaler CVE-2026-88772 reveal pre-auth shellcode path