Security News

ACSC Issues Critical Alert on Actively Exploited Citrix NetScaler Vulnerabilities

Key Takeaway If your business uses Citrix NetScaler ADC or Gateway, apply the vendor's security update immediately and check your logs for signs of compromise.

The Australian Cyber Security Centre (ACSC) has issued a critical alert for organisations running Citrix NetScaler ADC and Citrix NetScaler Gateway, after Citrix disclosed eight vulnerabilities affecting the products. The ACSC said at least two of the flaws had been actively exploited overseas before a patch was released, though no confirmed exploitation has been reported in Australia so far.

One vulnerability, CVE-2026-88771, is a remote code execution flaw that could let an unauthenticated attacker run arbitrary commands, and it affects all configurations of the two products. The remaining seven vulnerabilities only affect devices with specific configurations, and Citrix has provided guidance to help customers check whether their systems are exposed.

The ACSC is urging affected organisations to review Citrix's security bulletin, apply the available update, and use internal risk assessments to prioritise patching. It also recommends checking each vulnerability's specific conditions to understand exposure and reviewing device logs for signs of suspicious activity. Organisations that suspect they have been affected can contact the Australian Cyber Security Hotline on 1300 292 371.

Summarised by CISO AI from Australian Cyber Security Magazine. We link back to every original so you can read it yourself.