A recent vulnerability called “CitrixBleed 2” affects Citrix NetScaler ADC and Gateway, allowing attackers to hijack sessions and access sensitive data. Organizations are urged to update affected versions and terminate active sessions to prevent exploitation. #CitrixBleed2 #CVEs #NetScalerVulnerabilities
Keypoints
- The vulnerability CVE-2025-5777 allows unauthenticated memory access, leading to potential data leaks.
- Citrix recommends updating to specific patched versions across different release lines.
- Attackers can reuse leaked session tokens to hijack user sessions and bypass MFA.
- A second flaw, CVE-2025-5349, involves improper access control in the NetScaler Management Interface.
- Organizations should terminate sessions after updating to prevent session hijacking, as advised by experts.