Cybersecurityconnect.Au Critical Vulnerabilities in Citrix NetScaler Targeting Australian Organizations
Article Content
- •Two critical vulnerabilities in Citrix NetScaler products are actively exploited.
- •CVE-2026-88771 and CVE-2026-88778 have CVSS scores of 9.5 and 8.8, respectively.
- •Australian organizations are urged to review for signs of compromise and apply security updates.
The Australian Cyber Security Centre (ACSC) has issued a critical alert regarding exploitation of two vulnerabilities in Citrix NetScaler ADC and Gateway products. Reports indicate that Australian organizations have been targeted since at least September 4, 2026. The vulnerabilities, CVE-2026-88771 (remote code execution, CVSS 9.5) and CVE-2026-88778 (TCP ISN prediction, CVSS 8.8), were disclosed on September 27, 2026. Cybersecurity firm Arctic Wolf has observed malicious activities including command injection and reverse-shell attempts. Experts suggest that the motives behind these attacks may be espionage rather than criminal. Organizations are advised to review their systems for evidence of compromise and apply the necessary security updates. Citrix has provided indicators of compromise and additional guidance for affected products.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2026-88771 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Which Citrix products are affected?
What actions should organizations take?
Is there confirmed exploitation in the wild?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Zero-Day Vulnerabilities in Citrix NetScaler Under Active Exploitation On September 26, 2026, security firm watchTowr reported two unpatched zero-day vulnerabilities in Citrix NetScaler ADC and Gateway appliances, allowing remote code execution (RCE) and actively exploited in the wild. Citrix has confirmed the existence of these vulnerabilities, tracked as CVE-2026-88771 and…