f5

1,024 tracked vulnerabilities.

CVE-2025-61955 HIGH
F5OS-A F5OS-C - Privilege Escalation
Oct 15, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-61951 HIGH
F5 BIG-IP 16.1.0-16.1.6.1 - Denial of Service via DTLS 1.2 Virtual Server
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-61938 HIGH
F5 BIG-IP Advanced WAF and ASM 17.1.0-17.1.3 - Denial of Service via Data Guard Protection Enforcement URL Length
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-60016 HIGH
F5 BIG-IP Next 1.1.0-1.3.9 & Service Proxy for Kubernetes 1.7.0-1.9.1 DoS via Brainpool Curve SSL
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-60015 MEDIUM
F5OS-A 1.5.1-1.5.3 and F5OS-C 1.6.0-1.6.1 - Out-of-bounds Write
Oct 15, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-60013 MEDIUM
F5OS-A 1.5.1-1.5.4 - Authenticated OS Command Injection via FIPS Module Initialization
Oct 15, 2025
CVSS 4.6
EPSS 0.00
CVE-2025-59781 HIGH
F5 BIG-IP - Denial of Service via DNS Cache Memory Exhaustion
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59778 HIGH
F5OS-C 1.6.0-1.6.1 - Denial of Service via Allowed IP Addresses Feature
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59483 MEDIUM
Configuration Utility - Info Disclosure
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59481 HIGH
BIG-IP TMOS Shell - Privilege Escalation
Oct 15, 2025
CVSS 8.7
EPSS 0.00
CVE-2025-59478 HIGH
BIG-IP Advanced Firewall Manager 15.1.0-15.1.10.7 - Denial of Service via DoS Protection Profile
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59269 MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Stored Cross-Site Scripting in Configuration Utility
Oct 15, 2025
CVSS 6.1
EPSS 0.00
CVE-2025-59268 MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Unauthenticated Sensitive Information Exposure via Configuration Utility
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58474 MEDIUM
F5 BIG-IP Advanced WAF and NGINX App Protect - Request Disruption Denial of Service
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58424 MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Data Corruption and Unauthorized Data Modification via Predictable Identifier Generation
Oct 15, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-58153 MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Denial of Service via High-Speed Bridge Lockup
Oct 15, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-58120 HIGH
F5 BIG-IP Next 1.1.0-1.4.1 & Service Proxy for Kubernetes 1.7.0-1.7.14 - DoS via HTTP/2 Ingress
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-58096 HIGH
F5 BIG-IP 15.1.0-15.1.10.8 - Denial of Service via Non-Default TCP/UDP Checksum Setting
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55670 MEDIUM
F5 BIG-IP Next CNF SPK and Kubernetes - Denial of Service via Repeated Undisclosed API Calls
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-55669 HIGH
BIG-IP ASM 16.1.0-16.1.5 - Denial of Service via HTTP/2 Traffic
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55036 HIGH
BIG-IP SSL Orchestrator - Memory Corruption
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54858 HIGH
F5 BIG-IP Advanced WAF and ASM 15.1.0-15.1.10.7 - Denial of Service via Malformed JSON Schema
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54854 HIGH
BIG-IP APM 15.1.0-15.1.10.8 - Out-of-bounds Read in OAuth Access Profile
Oct 15, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54805 MEDIUM
F5 BIG-IP Next 1.1.0-1.4.1 & Service Proxy for Kubernetes 1.7.0-1.9.2 - Use-After-Free in iRule API
Oct 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-54755 MEDIUM
F5 BIG-IP 15.1.0-15.1.10.8 - Authenticated Path Traversal in TMUI
Oct 15, 2025
CVSS 4.9
EPSS 0.00