New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
Citrix has released security updates for CVE-2026-88779, a high-severity (CVSS 8.7) memory overflow vulnerability in NetScaler ADC and NetScaler Gateway that has been exploited in targeted zero-day attacks. Successful exploitation can knock SAML-based deployments offline. Citrix urges administrators to apply the updates immediately.