Authorities in the Netherlands, the United States and the United Kingdom confirmed vulnerabilities in NetScaler Gateway; Citrix confirmed eight flaws.
Incident response teams began warning on Saturday about possible vulnerabilities in NetScaler Gateway products. On Sunday, cybersecurity agencies in the Netherlands, the United States and the United Kingdom published notices confirming vulnerabilities. Citrix confirmed eight new flaws. The report was published on September 28, 2026, and the supplied material does not detail identifiers, affected versions, or remediation steps.
To follow the case, consult the original report from The Record and notices from the agencies and Citrix; compare dates, products, and technical guidance before acting. If you use AI to summarize or apply those materials, do not submit credentials, personal data, or internal infrastructure details. Use public or sanitized content and verify recommendations against official sources.