Home · Wiki · Vulnerabilities & CVEs
type: cve · created: 2026-09-28 · updated: 2026-09-28 · tags: [cve, citrix] · confidence: high · severity: high · affected_sectors: [global] · au_impact: false

CVE-2026-88778 is a predictable-value vulnerability — one whose exact value can be derived from previous values — in Citrix NetScaler ADC and Citrix NetScaler Gateway. NVD rates it 8.8 high (CVSS 4.0). Affected builds are ADC before 14.1-73.37, 13.1-64.23, 14.1-73.37 FIPS and 13.1.37.279 FIPS and NDcPP, and Gateway before 14.1-73.37 and 13.1-64.23. It is the highest-numbered of the eight vulnerabilities fixed by Citrix security bulletin CTX697096 and, unlike CVE-2026-88771 and CVE-2026-88772, it carries no reported exploitation evidence and was not added to CISA's Known Exploited Vulnerabilities catalogue; it is patched by the same bulletin update.

Attribute Detail
CVE CVE-2026-88778
CVSS 8.8 (high)
Vendor / product Citrix NetScaler ADC / Gateway
Reported 2026-09-28