CVE-2025-4365: Citrix NetScaler Console
High severity, CVSS 7.5. EPSS: 10.8% chance of exploitation in the next 30 days.
Arbitrary file read in NetScaler Console and NetScaler SDX (SVM)
Affected products
- Citrix NetScaler Console: version 13.1 only; version 14.1 only
- Citrix NetScaler Sdx: from 13.1-49.13, before 13.1-58.32 (fixed in 13.1-58.32); from 14.1-4.42, before 14.1-47.46 (fixed in 14.1-47.46)
Published 2025-06-17. Last modified 2026-06-17.