Home / Sep 28, 2026 / Story
0
#1 BleepingComputer general September 27, 2026 at 16:02 UTC

Citrix admins warned to shut down NetScalers over 2 exploited zero-days

By Lawrence Abrams

AI Summary

Two unpatched zero-day RCE vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway are under active exploitation, with patches not expected until the following week. Security firm watchTowr publicly disclosed the flaws on September 26 after Citrix failed to confirm or remediate them; cybersecurity agencies and IT providers are privately warning organizations, and some administrators have already taken appliances offline as a precaution. NetScaler deployments are high-value targets given their role as network perimeter gateways, making this a critical priority for any organization running these appliances.

Relevance score: 88.0/100

# More from September 28