Skip to content

Security: cybrdude/citrixscan

Security

SECURITY.md

Security Policy

Reporting Vulnerabilities in CitrixScan

If you discover a security vulnerability in CitrixScan itself (not in Citrix NetScaler), please report it responsibly.

Email: security@netguard24-7.com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

We will acknowledge receipt within 48 hours and provide a timeline for resolution.

Reporting New Citrix NetScaler Vulnerabilities

CitrixScan is a detection tool, not a vulnerability research platform. If you discover a new vulnerability in Citrix NetScaler:

  1. Report to Citrix first via their responsible disclosure program
  2. Once a CVE is assigned and a patch is available, submit a New CVE issue to add it to CitrixScan's database

Scope

This security policy covers the CitrixScan tool itself. It does not cover Citrix NetScaler products, which are maintained by Cloud Software Group.

There aren't any published security advisories