# CISA lists NetScaler SAML flaw as exploited after another patch release

_Published Tuesday, October 6, 2026 at 12:07 AM EDT · Security · Latest · Tier 2 — Notable_

![CISA lists NetScaler SAML flaw as exploited after another patch release — Primary](https://assets.st-note.com/production/uploads/images/321333562/rectangle_large_type_2_451db7d1c1718cdff44646ba85677ae1.png?fit=bounds&quality=85&width=1280)

CISA added NetScaler vulnerability CVE-2026-88779 to its Known Exploited Vulnerabilities catalog on October 4, according to a security analysis published on note. The flaw affects customer-managed ADC and Gateway appliances configured to provide or consume SAML authentication, which lets services exchange login credentials.

Citrix released fixes on October 3. Appliances updated for the September 27 vulnerabilities still require another update if they use the affected configuration. The required main-branch builds are 14.1-73.41 or later and 13.1-64.28 or later.

Citrix identifies the impact as denial of service caused by memory overflow. watchTowr reproduced the flaw on October 5 and assessed it as denial of service; remote code execution through this vulnerability has not been confirmed.

## Sources

- [note](https://note.com/zsecurity/n/nec23c2bd7dff?hl=en)

---
Canonical: https://techandbusiness.org/newswire/Z1uSGsf630cJVcfqqtd9hj
Published: 2026-10-06T04:07:56.735Z
Story chronology: 2026-10-04T00:00:00.000Z
Retrieved: 2026-10-06T05:56:39.100Z
Publisher: Tech & Business (techandbusiness.org)
