MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 8 h ago, last 8 h ago, peak #7

Citrix NetScaler SAML zero-day actively exploited, added to CISA KEV

Original: 🚨 Citrix NetScaler SAML zero-day (CVE-2026-88779, CVSS 8.7) in CISA KEV. Actively exploited. Memory overflow in SAML han

A zero-day vulnerability in Citrix NetScaler, tracked as CVE-2026-88779 with a CVSS score of 8.7, has been added to CISA's Known Exploited Vulnerabilities catalog amid reports of active exploitation. The flaw is a memory overflow in the SAML handler that can crash the appliance, disrupting VPN and SSO services for organizations using SAML SP or IdP configurations. Researchers warn it may bypass the previous patch. Fixed builds are 14.1-73.41 and 13.1-64.28, and administrators are urged to update immediately.

Why now: Security teams are rushing to patch a zero-day that is being actively exploited and can take down enterprise VPN and single sign-on.

CitrixNetScalerCISACVE-2026-88779

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/1057892