By Divya
Publication Date: 2026-10-05 04:46:00
Citrix has released emergency security updates to address a high-severity memory overflow vulnerability in NetScaler ADC and NetScaler Gateway.
This flaw, tracked as CVE-2026-88779, could allow unauthenticated remote attackers to cause persistent denial-of-service conditions.
The vulnerability specifically affects appliances configured for SAML authentication, whether set as a Service Provider (SP) or an Identity Provider (IdP).
Cloud Software Group has assigned a CVSS v4 base score of 8.7 to this issue and categorized it as CWE-119, which refers to improper restriction of operations within the bounds of a memory buffer.
The published vector indicates that this flaw can be exploited over the network with low attack complexity and does not require authentication or user interaction. Its assessed impact is primarily on availability.
Citrix NetScaler SAML Vulnerability
CVE-2026-88779 is relevant only when NetScaler ADC or Gateway is set up to process SAML…

