First published · Last updated
CVE-2026-88771: Citrix NetScaler Improper Input Validation Vulnerability
Citrix NetScaler ADC and NetScaler Gateway contain an improper input validation vulnerability that could allow an unauthenticated attacker to execute arbitrary commands. CISA guidance directs stakeholders to apply vendor mitigations and follow BOD 26-04 or discontinue use if mitigations are unavailable.
Categories: technology
Generated scores
Scores are based on the cited reporting and use a 1–10 scale. Read the methodology.
- Confidence
- 8/10
- Geographic reach
- 4/10
- Global importance
- 6/10
- Impact magnitude
- 6/10
- Positivity
- 2/10
- Urgency
- 7/10
Why it matters
Because the flaw could allow unauthenticated attackers to execute arbitrary commands, affected systems are at risk.

