logo

Thousands of Citrix NetScaler boxes still sitting ducks despite patches

ID: 015e155b-09d1-5309-b409-e4d6af2586a8

STIX ID: report--015e155b-09d1-5309-b409-e4d6af2586a8

Feed Name: The Register (Security)

Threat Score
88/100

Date Published: 2025-08-28

Date Updated: 2026-04-26

Author: Carly Page

...
...

Citrix released patches for three critical NetScaler flaws, including CVE-2025-7775 (CVSS 9.2, called CitrixBleed 3), which is being actively exploited in the wild as a pre-auth RCE to deploy web shells; despite fixes, Shadowserver observed ~13,000 vulnerable appliances still exposed, prompting CISA to add the CVE to its KEV list and warnings from national cyber agencies about likely mass exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.