Junglewise Threat Intelligence

CVE-2026-88776: Citrix NetScaler ADC memory overflow

CVE-2026-88776 · Severity: info · Published 2026-09-27

Technologies: Citrix NetScaler ADC, Citrix NetScaler Gateway. Vendors: Citrix.

Executive brief

Citrix NetScaler ADC and Gateway are appliances used to manage and secure network traffic for enterprise applications. A memory overflow vulnerability in these products could allow an attacker to cause unpredictable behavior or denial of service, disrupting access to critical business applications.

Technical details

A memory overflow vulnerability exists in Citrix NetScaler ADC and Gateway that can result in unpredictable behavior or denial of service. The vulnerability affects multiple versions across both products and FIPS builds. Exploitation leads to service disruption without indication of remote code execution capability.

Affected products

  • Citrix NetScaler ADC before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, before 13.1.37.279 FIPS and NDcPP
  • Citrix NetScaler Gateway before 14.1-73.37, before 13.1-64.23

Timeline

  • 2026-09-27: disclosed: CVE-2026-88776 published

References

Related threats