CVE-2026-88779
CVE-2026-88779: 1 tracked advisory record across NetScaler. CISA KEV listed; exploitation observed. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
NetScaler
1 advisory- Advisory severityHigh8.7
High [CVE-2026-88779] Understanding and Addressing CVE-2026-88779 in Citrix NetScaler ADC and Citrix NetScaler Gateway
CVE-2026-88779Source published Source updated
CVE-2026-88779 is a memory overflow vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway that can lead to denial of service under specific deployment conditions. The issue affects customer-managed NetScaler deployments running affected supported versions when the required preconditions are met. Customers should review their deployed versions and configurations, then install the relevant updated versions as soon as possible. Affected Versions The following supported versions are affected when the CVE preconditions (see the section “How to Determine Whether a NetScaler deployment Meets the Preconditions” below) apply: NetScaler ADC and NetScaler Gateway 14.1 before 14.1-73.41 NetScaler ADC and NetScaler Gateway 13.1 before 13.1-64.28 NetScaler ADC FIPS before 14.1-73.41 FIPS…
- Affected products in this advisory
- Gateway
- Source-reported affected versions
- NetScaler ADC and NetScaler Gateway 14.1 before 14.1-73.41
- NetScaler ADC and NetScaler Gateway 13.1 before 13.1-64.28
- NetScaler ADC FIPS before 14.1-73.41
- NetScaler ADC FIPS and NDcPP before 13.1-37.282
- Source-reported fixed versions
- 14.1-73.41
- 13.1-64.28
- 13.1-37.282
- Mitigation guidance
- Upgrade to a fixed build: 14.1-73.41, 13.1-64.28, 13.1-37.282 or later for your release line.
- Citrix strongly urges all customers to install the latest versions as soon as possible.
- Workarounds
- Customers can block suspicious IP addresses by using the blocklist functionality of NetScaler.
- As part of a defense-in-depth approach, customers should review relevant network and perimeter controls and, where appropriate, use firewall rules to block traffic from IP addresses identified as sources of attack activity.
Android app · Google Play
Monitor future NetScaler CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.