CWE-CWE-457

Citrix NetScaler Memory Disclosure 'Citrix Bleed 2' (CVE-2025-5777)

Severity:
Critical
Summary

Invicti determined that it is possible to leak memory from Citrix NetScaler. Due to a memory disclosure vulnerability, an unauthenticated attacker can extract sensitive information from the system, potentially leading to its compromise.

Impact

An unauthenticated attacker can compromise Citrix NetScaler

Remediation

Upgrade to the latest version of Citrix NetScaler

Required Skills for Successful Exploitation
Actions To Take
Classifications
Vulnerability Index

You can search and find all vulnerabilities

Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Featured resources

Blog

Strengthening enterprise application security: Invicti acquires Kondukto

Blog

Modern AppSec KPIs: Moving from scan counts to real risk reduction

Blog

Friends don’t let friends shift left: Shift smarter with DAST-first AppSec

Blog

Vibe talking: Dan Murphy on the promises, pitfalls, and insecurities of vibe coding

No items found.