Description
Invicti determined that it is possible to leak memory from Citrix NetScaler. Due to a memory disclosure vulnerability, an unauthenticated attacker can extract sensitive information from the system, potentially leading to its compromise.
Remediation
Upgrade to the latest version of Citrix NetScaler
References
How Much More Must We Bleed? - Citrix NetScaler Memory Disclosure (CitrixBleed 2 CVE-2025-5777)
NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2025-5349 and CVE-2025-5777