Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

BIG-IP — Vulnerabilities & Security Advisories 371

All 371 CVE vulnerabilities found in BIG-IP, with AI-generated Chinese analysis, references, and POCs.

This page aggregates data for F5 BIG-IP appliances, focusing on known security vulnerabilities associated with the hardware and software stack. It collects a comprehensive set of security advisories, covering reported defects ranging from memory corruption issues to authentication bypasses, spanning from 2010 through the latest published updates. Readers can use this section to track the vendor’s advisory history, understand the prevalence of specific weakness classes such as integer overflow or improper input validation, and review the complete vulnerability timeline for this product line. The data serves as a central reference for security teams auditing infrastructure risks or researchers studying the evolution of weaknesses in network load balancers. It consolidates findings without marketing language, providing a factual record of disclosed flaws that have affected BIG-IP systems over the years. By examining these entries, users can identify patterns in recurring vulnerability types and assess the historical security posture of the product. This aggregation supports due diligence processes and helps stakeholders understand how the vendor has historically addressed critical security issues in their flagship networking equipment.

Vendor: F5 Networks, Inc.

CVE ID Title CVSS Severity Published
CVE-2026-66842 BIG-IP and BIG-IQ Configuration utility vulnerability CWE-918 8.8 High 2026-09-02
CVE-2026-63020 BIG-IP Configuration utility vulnerability CWE-451 3.1 Low 2026-09-02
CVE-2026-59762 BIG-IP HTTP/2 vulnerability CWE-770 7.5 High 2026-07-15
CVE-2026-24464 Appliance mode iControl REST vulnerability CWE-35 6.8 Medium 2026-05-13
CVE-2026-42930 Appliance mode iControl REST vulnerability CWE-35 8.7 High 2026-05-13
CVE-2026-40423 BIG-IP SIP profile vulnerability CWE-770 7.5 High 2026-05-13
CVE-2026-41959 iControl and tmsh REST vulnerability CWE-732 6.5 Medium 2026-05-13
CVE-2026-39458 BIG-IP DNS Cache vulnerability CWE-824 7.5 High 2026-05-13
CVE-2026-42406 BIG-IP and BIG-IQ privilege escalation vulnerability CWE-267 6.5 Medium 2026-05-13
CVE-2026-42058 BIG-IP iControl REST vulnerability CWE-732 4.3 Medium 2026-05-13
CVE-2026-32643 BIG-IP and BIG-IQ privilege escalation vulnerability CWE-250 6.5 Medium 2026-05-13
CVE-2026-39455 BIG-IP Configuration utility vulnerability CWE-772 7.5 High 2026-05-13
CVE-2026-42937 iControl REST and tmsh vulnerability CWE-732 5.5 Medium 2026-05-13
CVE-2026-41217 BIG-IP tmsh vulnerability CWE-732 7.9 High 2026-05-13
CVE-2026-34176 Knowledge Appliance mode iControl REST vulnerability CWE-78 8.7 High 2026-05-13
CVE-2026-32673 BIG-IP scripted monitor vulnerability CWE-250 8.7 High 2026-05-13
CVE-2026-41225 iControl REST vulnerability CWE-648 9.1 Critical 2026-05-13
CVE-2026-39459 iControl REST and tmsh vulnerability CWE-272 7.2 High 2026-05-13
CVE-2026-42063 iControl SOAP vulnerability CWE-552 4.9 Medium 2026-05-13
CVE-2026-41953 BIG-IP Privilege Escalation vulnerability CWE-77 6.5 Medium 2026-05-13
CVE-2026-40698 iControl REST and TMSH vulnerability CWE-77 6.5 Medium 2026-05-13
CVE-2026-40631 BIG-IP iControl SOAP vulnerability CWE-552 6.5 Medium 2026-05-13
CVE-2026-40060 BIG-IP Advanced WAF and ASM vulnerability CWE-252 7.5 High 2026-05-13
CVE-2026-42924 BIG-IP iControl SOAP vulnerability CWE-78 6.5 Medium 2026-05-13
CVE-2026-40061 iControl REST and tmsh vulnerability CWE-77 8.7 High 2026-05-13
CVE-2026-41227 BIG-IP HTTP/2 Layer 7 Dos Protection vulnerability CWE-770 7.5 High 2026-05-13
CVE-2026-42409 BIG-IP HTTP/2 vulnerability CWE-476 7.5 High 2026-05-13
CVE-2026-35062 iControl SOAP vulnerability CWE-266 6.5 Medium 2026-05-13
CVE-2026-40618 BIG-IP SSL/TLS vulnerability CWE-131 7.5 High 2026-05-13
CVE-2026-41956 BIG-IP TMM Vulnerability CWE-121 7.5 High 2026-05-13

All 371 known CVE vulnerabilities affecting BIG-IP with full Chinese analysis, references, and POCs where available.