First published · Last updated
CVE-2026-88772: Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
A memory-buffer vulnerability in Citrix NetScaler ADC and NetScaler Gateway could allow remote code execution or denial of service. CISA advises applying vendor mitigations, following BOD 26-04 guidance, assessing internet exposure, and following forensics triage requirements.
Categories: technology, politics-and-governance
Generated scores
Scores are based on the cited reporting and use a 1–10 scale. Read the methodology.
- Confidence
- 6/10
- Geographic reach
- 4/10
- Global importance
- 5/10
- Impact magnitude
- 6/10
- Positivity
- 2/10
- Urgency
- 7/10
Why it matters
Exploitation could enable remote code execution or service disruption, so organizations must apply mitigations and adhere to CISA guidance.

