vulnerability
CISA Says Attackers Are Exploiting Two Critical Citrix NetScaler Flaws Globally
CriticalCVSS 9.8KEVEPSS 1%
Summary
CISA has added two critical vulnerabilities in Citrix NetScaler to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation. Federal Civilian Executive Branch (FCEB) agencies have been given until September 30, 2026, to apply the fixes. Multiple threat intelligence sources confirm ongoing exploitation attempts.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
