CISA Issues Emergency Directive to Patch Actively Exploited Citrix NetScaler Vulnerabilities
Federal agencies directed to remediate critical flaws by mid-week deadline

Key Takeaways
- CISA has issued an emergency directive requiring U.S. federal agencies to patch two critical Citrix NetScaler vulnerabilities.
- The directive sets a Wednesday deadline for remediation.
- CISA confirmed the vulnerabilities are being actively exploited in the wild.
- Risks include unauthorized access, data exfiltration, and full system compromise.
Related Security News
Critical Vulnerabilities Affect Lantronix G520 Series Cellular Gateways
CISA has issued an industrial control systems advisory detailing two critical vulnerabilities in the Lantronix G520 Series Cellular Gateway. CVE-2026-84409 involves improper neutralization of input during web page generation (cross-site scripting) combined with a command execution interface, allowing attackers with metadata influence to execute arbitrary code with root privileges. CVE-2026-91191 stems from improper verification of cryptographic signatures and an exposed production private key, enabling unauthorized software packages to be accepted as authentic and executed with root privileges during boot. Both vulnerabilities affect firmware version 2.6.0.4R6_stable.


