Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

F5 — Vulnerabilities & Security Advisories 412

Browse all 412 CVE security advisories affecting F5. AI-powered Chinese analysis, POCs, and references for each vulnerability.

F5 Networks specializes in application delivery networking, providing load balancing, security, and traffic management solutions for enterprise web applications. With 345 recorded Common Vulnerabilities and Exposures (CVEs), the platform has historically been susceptible to a wide array of critical flaws. These include remote code execution (RCE) vulnerabilities, which allow attackers to gain unauthorized control over systems, alongside cross-site scripting (XSS) and privilege escalation issues that compromise data integrity and user access. Notable incidents often involve misconfigurations or unpatched software versions that expose backend infrastructure to external threats. The sheer volume of disclosed vulnerabilities highlights the complexity of maintaining secure application delivery networks. Organizations relying on these services must prioritize rigorous patch management and continuous monitoring to mitigate risks associated with such a extensive vulnerability history, ensuring operational resilience against evolving cyber threats.

CVE ID Title CVSS Severity Published
CVE-2026-42780 BIG-IP SSL Orchestrator vulnerability — BIG-IP CWE-22 4.9 Medium 2026-05-13
CVE-2026-41219 BIG-IP QKView vulnerability — BIG-IP CWE-532 6.5 Medium 2026-05-13
CVE-2026-28758 BIG-IP iControl REST vulnerability — BIG-IP CWE-312 4.4 Medium 2026-05-13
CVE-2026-40462 iControl REST and tmsh vulnerability — BIG-IP CWE-732 6.5 Medium 2026-05-13
CVE-2026-41954 iControl REST and tmsh vulnerability — BIG-IP CWE-200 4.9 Medium 2026-05-13
CVE-2026-40435 BIG-IP httpd access control vulnerability — BIG-IP CWE-420 5.3 Medium 2026-05-13
CVE-2026-40703 BIG-IP Configuration utility CSRF vulnerability — BIG-IP CWE-352 5.4 Medium 2026-05-13
CVE-2026-28755 NGINX ngx_stream_ssl_module vulnerability — NGINX Open Source CWE-863 5.4 Medium 2026-03-24
CVE-2026-27651 NGINX ngx_mail_auth_http_module vulnerability — NGINX Open Source CWE-476 7.5 High 2026-03-24
CVE-2026-27654 NGINX ngx_http_dav_module vulnerability — NGINX Open Source CWE-122 8.2 High 2026-03-24
CVE-2026-28753 NGINX ngx_mail_proxy_module vulnerability — NGINX Open Source CWE-93 3.7 Low 2026-03-24
CVE-2026-32647 NGINX ngx_http_mp4_module vulnerability — NGINX Open Source CWE-125 7.8 High 2026-03-24
CVE-2026-27784 NGINX ngx_http_mp4_module vulnerability — NGINX Open Source CWE-190 7.8 High 2026-03-24
CVE-2026-2507 BIG-IP TMM Vulnerability — BIG-IP CWE-476 7.5 High 2026-02-18
CVE-2026-22549 BIG-IP Container Ingress Services vulnerability — F5 BIG-IP Container Ingress Services CWE-250 4.9 Medium 2026-02-04
CVE-2026-1642 NGINX vulnerability — NGINX Open Source CWE-349 5.9 Medium 2026-02-04
CVE-2026-22548 BIG-IP Advanced WAF and ASM vulnerability — BIG-IP CWE-362 5.9 Medium 2026-02-04
CVE-2026-20730 BIG-IP Edge Client for Windows vulnerability — BIG-IP Edge Client CWE-200 3.3 Low 2026-02-04
CVE-2026-20732 BIG-IP Configuration utility vulnerability — BIG-IP CWE-451 3.1 Low 2026-02-04
CVE-2025-14727 NGINX Ingress Controller vulnerability — NGINX Ingress Controller CWE-22 8.3 High 2025-12-17
CVE-2025-61990 TMM vulnerability — BIG-IP CWE-415 7.5 High 2025-10-15
CVE-2025-57780 F5OS Vulnerability — F5OS - Appliance CWE-250 7.8 High 2025-10-15
CVE-2025-61933 BIG-IP APM cross-site scripting (XSS) vulnerability — BIG-IP CWE-79 6.1 Medium 2025-10-15
CVE-2025-61935 BIG-IP Advanced WAF and ASM vulnerability — BIG-IP CWE-252 7.5 High 2025-10-15
CVE-2025-58071 BIG-IP IPSec vulnerability — BIG-IP CWE-457 7.5 High 2025-10-15
CVE-2025-53860 F5OS-A FIPS HSM vulnerability — F5OS - Appliance CWE-214 4.1 Medium 2025-10-15
CVE-2025-54755 BIG-IP Configuration utility vulnerability — BIG-IP CWE-22 4.9 Medium 2025-10-15
CVE-2025-60015 F5OS out-of-bounds write vulnerability — F5OS - Appliance CWE-787 5.7 Medium 2025-10-15
CVE-2025-61974 BIG-IP SSL/TLS vulnerability — BIG-IP CWE-401 7.5 High 2025-10-15
CVE-2025-59483 BIG-IP Configuration utility and tmsh vulnerability — BIG-IP CWE-73 6.5 Medium 2025-10-15

This page lists every published CVE security advisory associated with F5. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.