f5
1,024 tracked vulnerabilities.
CVE-2025-61955
HIGH
F5OS-A F5OS-C - Privilege Escalation
Oct 15, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-61951
HIGH
F5 BIG-IP 16.1.0-16.1.6.1 - Denial of Service via DTLS 1.2 Virtual Server
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-61938
HIGH
F5 BIG-IP Advanced WAF and ASM 17.1.0-17.1.3 - Denial of Service via Data Guard Protection Enforcement URL Length
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-60016
HIGH
F5 BIG-IP Next 1.1.0-1.3.9 & Service Proxy for Kubernetes 1.7.0-1.9.1 DoS via Brainpool Curve SSL
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-60015
MEDIUM
F5OS-A 1.5.1-1.5.3 and F5OS-C 1.6.0-1.6.1 - Out-of-bounds Write
Oct 15, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-60013
MEDIUM
F5OS-A 1.5.1-1.5.4 - Authenticated OS Command Injection via FIPS Module Initialization
Oct 15, 2025
CVSS 4.6
EPSS 0.00
CVE-2025-59781
HIGH
F5 BIG-IP - Denial of Service via DNS Cache Memory Exhaustion
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59778
HIGH
F5OS-C 1.6.0-1.6.1 - Denial of Service via Allowed IP Addresses Feature
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59483
MEDIUM
Configuration Utility - Info Disclosure
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59481
HIGH
BIG-IP TMOS Shell - Privilege Escalation
Oct 15, 2025
CVSS 8.7
EPSS 0.00
CVE-2025-59478
HIGH
BIG-IP Advanced Firewall Manager 15.1.0-15.1.10.7 - Denial of Service via DoS Protection Profile
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59269
MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Stored Cross-Site Scripting in Configuration Utility
Oct 15, 2025
CVSS 6.1
EPSS 0.00
CVE-2025-59268
MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Unauthenticated Sensitive Information Exposure via Configuration Utility
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58474
MEDIUM
F5 BIG-IP Advanced WAF and NGINX App Protect - Request Disruption Denial of Service
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58424
MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Data Corruption and Unauthorized Data Modification via Predictable Identifier Generation
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58153
MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Denial of Service via High-Speed Bridge Lockup
Oct 15, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-58120
HIGH
F5 BIG-IP Next 1.1.0-1.4.1 & Service Proxy for Kubernetes 1.7.0-1.7.14 - DoS via HTTP/2 Ingress
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-58096
HIGH
F5 BIG-IP 15.1.0-15.1.10.8 - Denial of Service via Non-Default TCP/UDP Checksum Setting
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55670
MEDIUM
F5 BIG-IP Next CNF SPK and Kubernetes - Denial of Service via Repeated Undisclosed API Calls
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-55669
HIGH
BIG-IP ASM 16.1.0-16.1.5 - Denial of Service via HTTP/2 Traffic
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55036
HIGH
BIG-IP SSL Orchestrator - Memory Corruption
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54858
HIGH
F5 BIG-IP Advanced WAF and ASM 15.1.0-15.1.10.7 - Denial of Service via Malformed JSON Schema
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54854
HIGH
BIG-IP APM 15.1.0-15.1.10.8 - Out-of-bounds Read in OAuth Access Profile
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54805
MEDIUM
F5 BIG-IP Next 1.1.0-1.4.1 & Service Proxy for Kubernetes 1.7.0-1.9.2 - Use-After-Free in iRule API
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-54755
MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Authenticated Path Traversal in TMUI
Oct 15, 2025
CVSS 4.9
EPSS 0.00
Products
big-ip_access_policy_manager 589
big-ip_application_security_manager 541
big-ip_advanced_firewall_manager 514
big-ip_local_traffic_manager 503
big-ip_policy_enforcement_manager 495
big-ip_link_controller 487
big-ip_application_acceleration_manager 486
big-ip_analytics 473
big-ip_global_traffic_manager 452
big-ip_domain_name_system 429
big-ip_fraud_protection_service 367
big-ip_webaccelerator 259
big-ip_edge_gateway 255
big-ip_advanced_web_application_firewall 155
big-ip_websafe 137
big-ip_ddos_hybrid_defender 127
big-ip_ssl_orchestrator 108
big-iq_centralized_management 77
big-ip_carrier-grade_nat 71
big-ip_application_visibility_and_reporting 70
big-ip_protocol_security_module 61
big-ip_container_ingress_services 48
big-ip_automation_toolchain 47
BIG-IP 46
nginx 41
enterprise_manager 39
njs 39
big-ip_wan_optimization_manager 38
traffix_signaling_delivery_controller 31
ssl_orchestrator 27
Quick Filters