On 27 September 2026, Citrix published a security bulletin addressing 8 vulnerabilities affecting customer-managed Citrix NetScaler ADC and Citrix NetScaler Gateway, among which 2 critical unauthenticated Remote Code Execution (RCE) vulnerabilities. Citrix has confirmed active exploitation of these 2 critical vulnerabilities in the wild. CERT-EU recommends updating affected software and running a compromise assessment on those exposed on the internet.
2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and Gateway
About this summary. This is a short, independently written summary of an article first published by CERT-EU. Cyber Security News did not report or verify the underlying story. Read the original: https://cert.europa.eu/publications/security-advisories/2026-014/
Source attribution: headline and facts are from CERT-EU (cert.europa.eu). Summary method: excerpt of the source description. See our source attribution policy.




