CVE-2026-88772 is a critical memory overflow vulnerability (CWE-119) in Citrix NetScaler ADC and NetScaler Gateway that allows unauthenticated remote attackers to achieve Remote Code Execution or Denial of Service without any user interaction. The vulnerability is triggered via the DTLS protocol, which is enabled by default on VPN virtual servers, meaning a large proportion of internet-facing deployments are exposed out-of-the-box. CISA has confirmed active exploitation in the wild and added this CVE to its Known Exploited Vulnerabilities catalog.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2026-09-27
Added to CISA KEV: 2026-09-27 0 DAY BETWEEN CVE AND KEV
CVE-2026-88772 is a critical memory overflow vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway when Datagram Transport Layer Security (DTLS) is enabled. It is significant because it allows unauthenticated, remote attackers to achieve remote code execution (RCE) or trigger a denial-of-service (DoS) condition on vulnerable appliances [2][3]. Given that DTLS is enabled by default for VPN virtual servers, many NetScaler Gateway deployments are exposed to this vulnerability by default [2].
CISA has added CVE-2026-88771 and CVE-2026-88772 to its Known Exploited Vulnerabilities (KEV) Catalog. Both are critical, zero-day vulnerabilities that can independently enable remote code execution. CISA has received reports and partner threat intelligence confirming that threat actors are actively…
"Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed," the company said. It did not say ... CVE-2026-88772 (CVSS v4 score: 9.5) - A memory overflow that can lead to remote code execution or denial-of-service (DoS). It affects appliances with DTLS ena…
CVE-2026-88772, Memory overflow vulnerability leading to Remote Code Execution or Denial of Service, DTLS configuration enabled on NetScaler ADC ...
Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed. Cloud Software Group strongly urges affected customers of NetScaler ADC and NetScaler Gateway to install the relevant updated versions as soon as possible. Citrix NetScaler ADC and Citrix NetScaler…
Description. Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, ...