A recent report from security firm watchTowr has revealed two unpatched zero-day vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway appliances, which enable remote code execution (RCE). As of September 26, these vulnerabilities are being actively exploited, raising alarms within the cybersecurity community. Citrix has yet to acknowledge the flaws or provide a patch, leaving many administrators with no choice but to take their appliances offline to mitigate potential risks.
For businesses relying on Citrix NetScaler products, the implications are substantial. The lack of an official fix and the ongoing exploitation of these vulnerabilities create a pressing risk for data breaches and other cyber threats. Organizations must prioritize their cybersecurity posture by implementing comprehensive monitoring and threat detection measures, while also considering temporary operational adjustments, such as taking affected systems offline or deploying alternative solutions. This situation underscores the critical need for timely communication and proactive response strategies within the cybersecurity landscape, especially as reliance on cloud-based services and remote access solutions continues to grow.
---
*Originally reported by [The Hacker News](https://thehackernews.com/2026/09/warning-two-unpatched-citrix-netscaler.html)*