# Citrix NetScaler DoS flaw patched

Published: 2026-10-04 · Severity: routine · Sectors: technology, infrastructure
Canonical: https://vorant.io/reports/5b7b5cbb-a8d9-556e-94f4-eaa83221e764/citrix-netscaler-dos-flaw-patched

> Citrix fixed an out-of-bounds write in NetScaler ADC/Gateway that can cause a Denial of Service; no exploitation reported.

NCSC-NL published an advisory covering CVE-2026-88779, a memory overflow (out-of-bounds write) vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway versions prior to 14.1-73.41 and 13.1-64.28. The vulnerability can be exploited to disrupt normal service availability, resulting in a Denial of Service condition. The CVSS v4 score is listed as 8.7, indicating significant impact if triggered.

Citrix has released updated versions that address the issue. Defenders running NetScaler ADC or Gateway should verify their deployed version against the fixed releases (14.1-73.41 or 13.1-64.28 and later) and apply patches as soon as feasible given the availability impact and the history of NetScaler products being targeted by threat actors. No indication of active exploitation is provided in this advisory.

## Mentioned in this report

- Vulnerabilities: CVE-2026-88779

Source reporting: https://advisories.ncsc.nl/2026/ncsc-2026-0399.html

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/5b7b5cbb-a8d9-556e-94f4-eaa83221e764/citrix-netscaler-dos-flaw-patched.
In the app the same report carries its extracted indicators, its detections with Splunk SPL and Microsoft KQL already written, live profiles of the actors and CVEs it names, and the vendor research on the same campaign. Slack alerts fire on the vendors, sectors and countries a reader follows. A new account starts with three days of all of it, no card: https://vorant.io/signup
