Two Citrix NetScaler flaws reportedly exploited as zero-days
Censys says the two remote-code-execution flaws are being actively exploited. It also reports seeing 42,735 internet-exposed NetScaler ADC or Gateway hosts.
TLDR
Censys says two Citrix NetScaler remote-code-execution flaws are being actively exploited as zero-days. Its September 28 advisory names them as CVE-2026-88771 and CVE-2026-88772. Censys reports seeing 42,735 internet-exposed NetScaler ADC or Gateway hosts; a separate post links to a detection artifact generator for CVE-2026-88771.
Combined views
7.8K
2 Sources, first seen 14h ago
