Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771)

Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771)

By @sinsinology
Publication Date: 2026-09-28 10:55:00

This research is a glimpse into the capability powering the watchTowr Platform, a Preemptive Exposure Management solution. We enable organizations to autonomously validate and mitigate their exposure to emerging threats, ahead of in-the-wild exploitation.

Request a demo

God damn it, we’re back in the room again.

We’ll probably write more here later, but for now, deal with this picture of our favorite software dev, who works at Citrix (we imagine).

Citrix, before you ask, we do accept our new volunteer role as an extension of your PSIRT function. You may have to compete with other vendors we work with for charity, but we’re willing to add you to the roster.

Who Is Citrix NetScaler, and Why Was A Gateway Their First C Project?

Citrix NetScaler (rebranded, then un-rebranded, in the way that only enterprise networking vendors can truly pull off) is a family of application…