Find notable cyber news and cases, enriched with sources, timelines, and signals.

Citrix security patch release for CVE-2025-7775

Security Patch Release
First reported
Last updated
Happening score
H score 58
1 unique sources, 1 articles

Summary

Hide ▲

Citrix released a patch bundle for NetScaler ADC and NetScaler Gateway covering three security flaws, including CVE-2025-7775. The release matters because Citrix said one flaw had been actively exploited in the wild, raising the urgency for exposed appliances. The fixes address remote code execution, denial-of-service, and access-control risk across affected deployments. Administrators were directed to move to the patched builds, with no available workarounds for the issues.

Related Happenings

HPE OneView CVE-2025-37164 patch release

Security Patch Release
First: 18.12.2025 16:39 Last: 18.12.2025 16:39 Sources 1

About this happening: **Hewlett Packard Enterprise** released **version 11.00** to fix **CVE-2025-37164**, a **CVSS 10.0** flaw in **HPE OneView Software** that could allow **remote code execution**. H...

FreePBX security patch release for CVE-2025-61675

Security Patch Release
First: 15.12.2025 16:32 Last: 15.12.2025 16:32 Sources 1

About this happening: **FreePBX** released fixes for **multiple security vulnerabilities** affecting its PBX platform, including **SQL injection**, **arbitrary file upload**, and an **authentication by...

Ivanti security patch release for CVE-2025-13659

Security Patch Release
First: 09.12.2025 19:10 Last: 09.12.2025 19:10 Sources 1

About this happening: **Ivanti** released **security updates** for **Endpoint Manager** to address **three high-severity vulnerabilities**, including two flaws that could enable **unauthenticated code...

Cloudflare WAF protections for React2Shell (CVE-2025-55182)

Advisory/Mitigation
First: 05.12.2025 17:12 Last: 05.12.2025 17:12 Sources 1

About this happening: Cloudflare rolled out **WAF protections** for **CVE-2025-55182 / React2Shell**, a mitigation aimed at reducing **unauthenticated RCE** risk across **React** deployments. The actio...

SonicWall security patch release for CVE-2025-40604

Security Patch Release
First: 20.11.2025 17:56 Last: 20.11.2025 17:56 Sources 1

About this happening: **SonicWall** released fixes for **CVE-2025-40604** and **CVE-2025-40605** in its **Email Security appliances**, addressing a flaw set that could let remote attackers achieve **pe...

Timeline

  1. 26.08.2025 20:29 1 articles · 9mo ago

    CISA adds CVE-2025-7775 to KEV

    Legal Policy Action Update

    CISA added CVE-2025-7775 to the Known Exploited Vulnerabilities catalog and ordered Federal Civilian Executive Branch agencies to remediate the flaw within 48 hours, after the vulnerability was associated with active exploitation of unmitigated Citrix NetScaler appliances.

    Show sources
  2. 26.08.2025 20:29 1 articles · 9mo ago

    Citrix releases NetScaler fixes for three flaws

    Mitigation Patch Update

    Citrix released fixes for NetScaler ADC and NetScaler Gateway covering CVE-2025-7775, CVE-2025-7776, and CVE-2025-8424, said exploits of CVE-2025-7775 on unmitigated appliances had been observed, and listed fixed builds with no available workarounds.

    Show sources