Close Menu
NCIJ Network NCIJ Network
    What's Hot

    In three years, Israel’s war on Gaza hasn’t just changed the Middle East, it’s changed the world | Steve Bloomfield

    October 10, 2026

    Palestinian president Abbas postpones legislative, presidential elections to September 2027

    October 10, 2026

    Profile – Kemi Badenoch – BBC Sounds

    October 10, 2026
    Facebook X (Twitter) Instagram
    Trending
    • In three years, Israel’s war on Gaza hasn’t just changed the Middle East, it’s changed the world | Steve Bloomfield
    • Palestinian president Abbas postpones legislative, presidential elections to September 2027
    • Profile – Kemi Badenoch – BBC Sounds
    • An Anthropic AI model sent a false homicide tip to Philadelphia police
    • Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland
    • Here’s How Not To Screw Up Your Bitcoin Privacy
    • The more Putin escalates his attacks on Europe, the more Europe should support Ukraine | Timothy Garton Ash
    • Severe injuries at French student protests draw scrutiny to police tactics
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Saturday, October 10
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Citrix warns admins to patch new NetScaler RCE flaw immediately

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKOctober 10, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions.

    Tracked as CVE-2026-107406, this flaw stems from a memory overflow weakness that attackers can exploit to gain remote code execution (RCE) on targeted devices or trigger a denial-of-service state that can cause crashes.

    To be vulnerable, NetScaler ADC and NetScaler Gateway appliances must be configured as a Security Assertion Markup Language (SAML) Identity Provider (IdP) or Service Provider (SP).

    “We strongly urge affected customers to review the advisory and upgrade impacted NetScaler instances to the recommended versions as soon as possible,” the company said. “As of the publication of the bulletin, Citrix is not aware of any unmitigated exploits of this vulnerability.”

    Citrix advised customers to upgrade vulnerable NetScaler ADC and NetScaler Gateway appliances to:

    • NetScaler ADC and NetScaler Gateway 14.1-73.46 and later,
    • NetScaler ADC and NetScaler Gateway 13.1-64.29 and later releases of 13.1
    • NetScaler ADC 14.1-FIPS 14.1-73.46 FIPS and later releases of 14.1-FIPS
    • NetScaler ADC 13.1-FIPS and 13.1-NDcPP 13.1.37.283 and later releases of 13.1-FIPS and 13.1-NDcPP

    Internet threat watchdog Shadowserver tracks over 21,000 IP addresses with NetScaler fingerprints exposed on the Internet (including just over 1,500 Gateway instances and nearly 20,000 NetScaler ADC appliances).

    However, at the time, there is no information on how many are honeypots, have already been patched, or have vulnerable configurations.

    Internet-exposed NetScaler appliances
    Internet-exposed NetScaler appliances (Shadowserver)

    While Citrix has not found evidence that attackers have begun exploiting CVE-2026-107406 in the wild, the company warned of several other NetScaler vulnerabilities that attackers have abused since the start of the year.

    For instance, in March, Citrix urged customers to patch two other NetScaler security issues (CVE-2026-3055 and CVE-2026-4368) days before threat actors began abusing them.

    More recently, in September, it released security updates for two more actively exploited NetScaler RCE zero-days (CVE-2026-88771 and CVE-2026-88772) that let attackers deploy custom web shells and tunneling malware, steal credentials, gain root access, and spread into victims’ internal networks.

    Earlier this month, Citrix issued emergency updates to address a NetScaler denial-of-service zero-day flaw (CVE-2026-88779) that researchers and admins later said could also be exploited to gain remote code execution.

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has flagged 27 actively exploited Citrix vulnerabilities since November 2021, including seven abused in ransomware attacks.


    article image

    Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.

    Save your seat

    admins Citrix Flaw immediately NetScaler patch RCE warns
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland

    How to keep AI agents within their permissions

    FBI arrests another suspected ShinyHunters hacker after agency breach

    Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries

    The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition

    OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    In three years, Israel’s war on Gaza hasn’t just changed the Middle East, it’s changed the world | Steve Bloomfield

    October 10, 2026

    Palestinian president Abbas postpones legislative, presidential elections to September 2027

    October 10, 2026

    Profile – Kemi Badenoch – BBC Sounds

    October 10, 2026

    An Anthropic AI model sent a false homicide tip to Philadelphia police

    October 10, 2026
    Latest Posts

    Reform donor Arron Banks urged to set out extent of surveillance of journalists | Arron Banks

    August 10, 2026

    The Canadian Secessionists Who Love Trump

    August 10, 2026

    How ‘Harry Potter’ Fans Protected Dobby’s Grave From the Path of a U.K.-Ireland Power Line

    August 10, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    In three years, Israel’s war on Gaza hasn’t just changed the Middle East, it’s changed the world | Steve Bloomfield

    October 10, 2026

    Palestinian president Abbas postpones legislative, presidential elections to September 2027

    October 10, 2026

    Profile – Kemi Badenoch – BBC Sounds

    October 10, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.