Citrix patches new NetScaler zero-day as attackers crash appliances patched days earlier
Citrix released emergency builds for CVE-2026-88779, a memory overflow in NetScaler SAML deployments that attackers are using to knock appliances offline.
Cybersecurity news about “CISA KEV”.
Citrix released emergency builds for CVE-2026-88779, a memory overflow in NetScaler SAML deployments that attackers are using to knock appliances offline.
Fortinet disclosed an actively exploited FortiMail flaw rated 9.8 that lets unauthenticated attackers write arbitrary files; CISA added it to KEV with an October 4 deadline.
Cisco warned that attackers are exploiting a critical authentication bypass in Catalyst SD-WAN Manager that grants admin access; CISA ordered federal agencies to patch by 3 October.