NCSC urges mitigation of Citrix NetScaler vulnerabilities
In a September 28, 2026 publication, the UK NCSC urged organizations to promptly mitigate vulnerabilities affecting Citrix NetScaler ADC and Gateway. The notice said two were being actively exploited.
On September 28, 2026, the UK NCSC urged organizations to promptly mitigate vulnerabilities affecting Citrix NetScaler ADC and Gateway. The notice said two were being actively exploited; the supplied text does not specify identifiers or technical measures.
To act, consult the original NCSC notice and the vendor's security guidance. Confirm which versions and measures apply to your organization's environment before planning remediation.
Prioritize assessing exposed systems, follow official mitigation instructions, and record decisions and changes. Do not assume that the notice alone confirms a breach or describes the status of any specific installation.
If using AI to study the notice or prepare procedures, avoid submitting configurations, credentials, logs, or other identifiable internal data. Check generated recommendations against official sources before applying them.