CVE-2026-88779 is an unauthenticated, remotely exploitable memory overflow (CWE-119) in NetScaler ADC and NetScaler Gateway that causes a Denial of Service condition. No authentication or user interaction is required, and the vulnerability has been confirmed as actively exploited in the wild targeting SAML gateway configurations. CISA has issued an alert covering this vulnerability as a critical zero-day being weaponised against these internet-facing appliances.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2026-10-04
Added to CISA KEV: 2026-10-04 0 DAY BETWEEN CVE AND KEV
CVE-2026-88779 is a critical memory overflow vulnerability—classified as a buffer overflow (CWE-119)—affecting NetScaler ADC and NetScaler Gateway products. By improperly handling memory buffers, this vulnerability allows a remote, unauthenticated attacker to trigger a crash or render the affected component unresponsive, resulting in a Denial of Service (DoS) condition. It is a significant concern for organizations relying on these appliances to manage network traffic or facilitate secure access, as successful exploitation disrupts services and impacts availability.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88779 The information on this page is being provided to you on an "AS IS" and "AS-AVAILABLE" basis. The issues described on this page may or may not impact your system (s). Cloud Software Group Holdings, Inc. and its af…
CISA is amplifying Citrix's disclosure of eight new vulnerabilities affecting Citrix NetScaler ADC and Citrix NetScaler Gateway products: CVE- ...
Citrix NetScaler CVE-2026-88779 Exploited in the Wild to Knock SAML Gateways Offline https://lnkd.in/eTe2-4Kb.
The vulnerability is a memory overflow in Citrix NetScaler ADC and NetScaler Gateway, leading to a denial of service condition when an attacker can cause the affected components to crash or become unresponsive. The weakness involves improper handling of memory buffers and is categorized as a buffer…
Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS, and ...