Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

F5 — Vulnerabilities & Security Advisories 412

Browse all 412 CVE security advisories affecting F5. AI-powered Chinese analysis, POCs, and references for each vulnerability.

F5 Networks specializes in application delivery networking, providing load balancing, security, and traffic management solutions for enterprise web applications. With 345 recorded Common Vulnerabilities and Exposures (CVEs), the platform has historically been susceptible to a wide array of critical flaws. These include remote code execution (RCE) vulnerabilities, which allow attackers to gain unauthorized control over systems, alongside cross-site scripting (XSS) and privilege escalation issues that compromise data integrity and user access. Notable incidents often involve misconfigurations or unpatched software versions that expose backend infrastructure to external threats. The sheer volume of disclosed vulnerabilities highlights the complexity of maintaining secure application delivery networks. Organizations relying on these services must prioritize rigorous patch management and continuous monitoring to mitigate risks associated with such a extensive vulnerability history, ensuring operational resilience against evolving cyber threats.

CVE ID Title CVSS Severity Published
CVE-2025-47148 BIG-IP APM and SSL Orchestrator vulnerability — BIG-IP CWE-404 6.5 Medium 2025-10-15
CVE-2025-58474 BIG-IP Advanced WAF and ASM and NGINX App Protect DNS lookup vulnerability — BIG-IP CWE-770 5.3 Medium 2025-10-15
CVE-2025-59268 BIG-IP Configuration utility vulnerability — BIG-IP CWE-201 5.3 Medium 2025-10-15
CVE-2025-53474 BIG-IP iRules vulnerability — BIG-IP CWE-120 7.5 High 2025-10-15
CVE-2025-53859 NGINX ngx_mail_smtp_module vulnerability — NGINX Plus CWE-125 3.7 Low 2025-08-13
CVE-2025-54500 HTTP/2 Vulnerability — BIG-IP CWE-770 5.3 Medium 2025-08-13
CVE-2025-48500 BIG-IP APM VPN web client for macOS vulnerability — BIG-IP Edge Client CWE-353 7.3 High 2025-08-13
CVE-2025-52585 BIG-IP Client SSL profile vulnerability — BIG-IP CWE-476 7.5 High 2025-08-13
CVE-2025-46405 BIG-IP APM vulnerability — BIG-IP CWE-121 7.5 High 2025-08-13
CVE-2025-54809 F5 Access for Android vulnerability — F5 Access CWE-295 7.4 High 2025-08-13
CVE-2025-31644 Appliance mode BIG-IP iControl REST and tmsh vulnerability — BIG-IP CWE-77 8.7 High 2025-05-07
CVE-2025-35995 BIG-IP PEM vulnerability — BIG-IP CWE-125 7.5 High 2025-05-07
CVE-2025-41431 TMM Vulnerability — BIG-IP CWE-787 7.5 High 2025-05-07
CVE-2025-36525 BIG-IP APM PingAccess Virtual Server Vulnerability — BIG-IP CWE-120 7.5 High 2025-05-07
CVE-2025-36504 BIG-IP HTTP/2 vulnerability — BIG-IP CWE-770 7.5 High 2025-05-07
CVE-2025-41414 BIG-IP HTTP/2 vulnerability — BIG-IP CWE-476 7.5 High 2025-05-07
CVE-2025-41433 BIG-IP SIP ALG profile vulnerability — BIG-IP CWE-476 7.5 High 2025-05-07
CVE-2025-46265 F5OS vulnerability — F5OS - Appliance CWE-863 8.8 High 2025-05-07
CVE-2025-43878 F5OS-A/C CLI vulnerability — F5OS - Appliance CWE-149 6.0 Medium 2025-05-07
CVE-2025-36557 BIG-IP HTTP vulnerability — BIG-IP CWE-120 7.5 High 2025-05-07
CVE-2025-36546 F5OS Appliance Mode vulnerability — F5OS - Appliance CWE-863 8.1 High 2025-05-07
CVE-2025-41399 SCTP Vulnerability — BIG-IP CWE-404 7.5 High 2025-05-07
CVE-2025-1695 NGINX Unit Java Vulnerability — NGINX Unit CWE-835 5.3 Medium 2025-03-04
CVE-2025-23413 BIG-IP Next Central Manager vulnerability — BIG-IP Next Central Manager CWE-532 4.4 Medium 2025-02-05
CVE-2025-23419 TLS Session Resumption Vulnerability — NGINX Open Source CWE-863 4.3 Medium 2025-02-05
CVE-2025-24320 BIG-IP Configuration utility vulnerability — BIG-IP CWE-79 8.0 High 2025-02-05
CVE-2025-24319 BIG-IP Next Central Manager vulnerability — BIG-IP Next Central Manager CWE-20 6.5 Medium 2025-02-05
CVE-2025-20029 BIG-IP iControl REST and tmsh vulnerability — BIG-IP CWE-78 8.8 High 2025-02-05
CVE-2025-24497 BIG-IP PEM vulnerability — BIG-IP CWE-125 7.5 High 2025-02-05
CVE-2025-24312 BIG-IP AFM vulnerability — BIG-IP CWE-770 7.5 High 2025-02-05

This page lists every published CVE security advisory associated with F5. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.