Skip to main content
← CVE Tracker

Vendor

F5

5 articles

VU
HIGH
Vulnerabilities

F5 BIG-IP and NGINX Vulnerabilities: CVE-2024-41730 and CVE-2024-39475

F5 releases critical security updates for BIG-IP and NGINX Plus, addressing authentication bypass, RCE, and memory corruption vulnerabilities.

Runtime Rebel Intel
3 min read · Jul 16, 2026
CVE-2026-42530 & -42531: NGINX RCE via Use-After-Free
HIGH
Vulnerabilities

CVE-2026-42530 & -42531: NGINX RCE via Use-After-Free

F5 addresses critical RCE flaws [CVE-2026-42530, CVE-2026-42531] in NGINX Open Source. Unauthenticated attackers can exploit use-after-free issues. Patch now.

Runtime Rebel Intel
4 min read · Jun 18, 2026
VU
HIGH
Vulnerabilities

CVE-2023-46747: 14,000 F5 BIG-IP APM Instances Exposed to RCE

Over 14,000 F5 BIG-IP APM instances remain vulnerable to critical RCE flaws. Learn about CVE-2023-46747 exploitation risks and how to secure your perimeter.

Runtime Rebel Intel
3 min read · Apr 2, 2026
VU
CRITICAL
Vulnerabilities

F5 BIG-IP RCE via CVE-2023-46747 — Mitigation and Exploitation Guide

Exploit analysis of the critical F5 BIG-IP authentication bypass (CVE-2023-46747). Learn how to detect webshell deployment and apply essential security patches.

Runtime Rebel Intel
3 min read · Mar 30, 2026
CVE-2025-53521: CISA Warns of Active F5 BIG-IP APM RCE Exploitation
CRITICAL
Vulnerabilities

CVE-2025-53521: CISA Warns of Active F5 BIG-IP APM RCE Exploitation

CISA adds CVE-2025-53521 to its KEV catalog following active exploitation of F5 BIG-IP APM. The critical RCE flaw carries a CVSS v4 score of 9.3.

Runtime Rebel Intel
4 min read · Mar 28, 2026