CVE-2026-22549Patch(f5 / big-ip_container_ingress_services)

LOWCVSS 6.9 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch f5 big-ip_container_ingress_services systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

1.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-250

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • big-ip_container_ingress_services
  • kubernetes
  • openshift

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-02-06)
  • 3 total mentions across 2 days

Affected systems

Products
big-ip_container_ingress_serviceskubernetesopenshift

1 version affected across 3 products

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-04: 1Mentions · 2026-02-06: 2Patch / Workaround · 2026-02-06: 2Technical Details · 2026-02-04: 1Technical Details · 2026-02-06: 202-0402-06
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-041
Disclosure1
2026-02-062
Patch2
Full discourse3 posts
  • ThreatSynop@ThreatSynop
    Patch

    🚨 F5 Urges Rapid Patching After High-Severity BIG-IP & NGINX Flaws Hit CVSS 8.2 F5’s Feb 6, 2026 Quarterly Security Notification fixes high-severity issues in BIG-IP Advanced WAF/ASM (CVE-2026-22548) and multiple NGINX products (CVE-2026-1642) that could enable security control bypass, privilege escalation, or service manipulation—plus a BIG-IP CIS issue (CVE-2026-22549) impacting Kubernetes/OpenShift ingress. Organizations running affected BIG-IP/NGINX stacks should urgently inventory, patch to fixed releases (e.g., BIG-IP 17.1.3; CIS 2.20.2), and apply SMTP module hardening to reduce exposure. 🎯 Target: Global/Enterprise (BIG-IP, NGINX, Kubernetes/OpenShift deployments) #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://cyberpress.org/f5-patches-critical-vulnerabilities/

    Post summary

    F5 issues a patch advisory for high‑severity CVEs affecting BIG‑IP and NGINX, urging immediate updates and hardening; no PoC or exploitation evidence is provided.

    0000089
    191 followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 F5 February 2026 Security Bulletin: BIG-IP & NGINX Fixes for DoS and Config Exposures F5’s February 2026 Quarterly Security Notification patches multiple BIG-IP/NGINX issues, including medium-severity DoS risks (e.g., BIG-IP Advanced WAF/ASM CVE-2026-22548, NGINX CVE-2026-1642, BIG-IP CIS CVE-2026-22549) plus lower-severity bugs like local privilege escalation in BIG-IP Config Utility (CVE-2026-20732) and an SMTP configuration exposure—making upgrades urgent for internet-facing WAF/Ingress deployments. 🎯 Target: Global/Enterprise & Internet-Facing WAF/Ingress #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://cybersecuritynews.com/f5-patches-critical-vulnerabilities/

    Post summary

    F5 issued a security bulletin detailing patches for several medium‑to‑low severity vulnerabilities in BIG‑IP and NGINX, urging immediate upgrades to protect internet‑facing deployments.

    0000067
    191 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-22549 A vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.  Note: Software versions which have reach… https://www.cve.org/CVERecord?id=CVE-2026-22549

    Post summary

    The text announces CVE-2026-22549 in F5 BIG‑IP Container Ingress Services, noting potential excessive permissions to read cluster secrets, but provides no PoC, exploit, patch, or active exploitation details.

    00000226
    56.5K followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appf5big-ip_container_ingress_services---
Appkuberneteskubernetes---
Appredhatopenshift---

Explore more