CVE-2026-2507Disclosure

LOWCVSS 8.7 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

When BIG-IP AFM or BIG-IP DDoS is provisioned, undisclosed traffic can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-476

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-02-19); latest day: 2
  • 5 total mentions across 3 days

Deep dive

Activity timeline5 mentions / 3d
01122Mentions · 2026-02-18: 1Mentions · 2026-02-19: 2Mentions · 2026-02-20: 2Patch / Workaround · 2026-02-19: 1Technical Details · 2026-02-18: 1Technical Details · 2026-02-19: 1Technical Details · 2026-02-20: 102-1802-1902-20
Signal classification3 categories
Disclosure
360.0%
Patch
120.0%
General
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-181
Disclosure1
2026-02-192
Disclosure1Patch1
2026-02-202
Disclosure1General1
Full discourse5 posts
  • CCB Alert@CCBalert
    Patch

    Warning: #F5 BIG-IP TMM vulnerability, #CVE-2026-2507, affecting #BIG-IP #AFM and #DDoS Hybrid Defender  allows a remote unauthenticated attacker to cause denial-of-service #DoS! https://ccb.belgium.be/advisories/warning-f5-big-ip-tmm-vulnerability-could-lead-denial-service-dos-patch-immediately #Patch #Patch #Patch

    Post summary

    The notice alerts to CVE‑2026‑2507 that permits remote unauthenticated DoS on F5 BIG‑IP devices and urges users to apply the available patch immediately.

    03031292
    7.2K followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-2507 - F5 - BIG-IP - https://www.redpacketsecurity.com/cve-alert-cve-2026-2507-f5-big-ip/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-2507 #f5 #big-ip

    Post summary

    A CVE alert for CVE-2026-2507 on F5 BIG‑IP has been issued, but the excerpt does not provide PoC, exploit, or patch information.

    00020110
    3.5K followersView on X
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidad en productos F5 ❗ CVE-2026-2507 ➡️ Más info: https://www.cert.gov.py/vulnerabilidad-en-productos-f5-3/ https://t.co/hCsJ2UXKB7

    Post summary

    The post identifies CVE-2026-2507 as a vulnerability affecting F5 products and provides a link for more information, but offers no detailed technical or exploitation details.

    00000128
    6.6K followersView on X
  • Autumn Good@autumn_good_35
    Disclosure

    AFMとDDoS Hybrid Defenderでデータプレーンからの認証不要のDoS K000160003: BIG-IP TMM vulnerability CVE-2026-2507 https://my.f5.com/manage/s/article/K000160003

    Post summary

    The post announces a new unauthenticated DoS vulnerability (CVE-2026-2507) in BIG‑IP TMM's data plane, providing basic details but no PoC, exploit, or patch information.

    00000346
    6.7K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-2507 When BIG-IP AFM or BIG-IP DDoS is provisioned, undisclosed traffic can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoT… https://www.cve.org/CVERecord?id=CVE-2026-2507

    Post summary

    The post announces CVE-2026-2507, noting that undisclosed traffic can crash BIG‑IP TMM when AFM or DDoS is provisioned, without providing a PoC, exploit, or patch information.

    00000246
    56.4K followersView on X

Explore more