Vendor
F5
BIG-IP BIG-IP and BIG-IQ Centralized Management BIG-IQ NGINX Gateway Fabric NGINX Open Source NGINX Plus
Tracked CVEs
Coverage timeline
-
Attackers Exploited Fortinet and F5 Flaws to Target Thai ISP 3BBwww.securityweek.com · Sep 15, 2026
-
Fileless PoisonedRefresh Rootkit Targets F5 BIG-IP APM Systemssecurityaffairs.com · Sep 9, 2026
-
F5 BIG-IP Flaw Hid In-Memory Web Shells from Disk Scansthehackernews.com · Sep 9, 2026
-
Stealth Linux Rootkit Targets F5 BIG-IP Appliances via RCEsecurityonline.info · Sep 7, 2026
-
CVE-2026-42530: NGINX HTTP/3 flaw allows remote code executionsecurityonline.info · Jul 30, 2026
-
NGINX Heap Overflow Flaw (CVE-2026-42533) Patches Releasedsecurityonline.info · Jul 28, 2026
-
Critical NGINX Flaw CVE-2026-42533 Allows Remote Code Executionsecurityaffairs.com · Jul 20, 2026
-
F5 patches NGINX heap overflow bug CVE-2026-42533 in eight fixeswww.securityweek.com · Jul 16, 2026
-
F5 patches NGINX memory flaw enabling remote code executionsecurityonline.info · Jul 16, 2026
-
F5 releases patches for critical NGINX HTTP/3 and HTTP/2 flawssocradar.io · Jun 19, 2026
-
F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055)securityonline.info · Jun 19, 2026
-
F5 Patches Critical NGINX Vulnerabilities Enabling Unauthenticated Code Executionsecurityaffairs.com · Jun 18, 2026
-
F5 patches NGINX remote code flaws CVE-2026-42530, CVE-2026-42055www.securityweek.com · Jun 18, 2026
-
Critical NGINX heap overflow flaw lets attackers hijack serverssecurityonline.info · May 25, 2026
-
Hackers Exploit NGINX Zero Day CVE-2026-42945 in Wildwww.securityweek.com · May 18, 2026
-
NGINX Rift flaw CVE-2026-42945 exploited despite ASLR mitigationssecurityaffairs.com · May 18, 2026
-
CVE-2026-42945 Exploit Seen In Wild, NGINX Users Urged To Patchthehackernews.com · May 17, 2026
-
PoC Code Published for Critical NGINX Vulnerabilitywww.securityweek.com · May 16, 2026
-
NGINX Rift flaw lets attackers run code with one HTTP requestsecurityaffairs.com · May 14, 2026
-
CVE-2026-42945: NGINX Rewrite Bug Allows Remote Code Executionsocradar.io · May 14, 2026
-
F5 fixes NGINX heap overflow and iControl REST command injectionwww.securityweek.com · May 14, 2026
-
NGINX Rift Bug Lets Attackers Run Code Remotely via Malicious URIthehackernews.com · May 14, 2026
-
F5 BIGIP APM Servers Exposed as CVE-2025-53521 Actively Exploitedsecurityaffairs.com · Apr 6, 2026
-
CVE-2025-53521: F5 BIG-IP APM Flaw Reclassified as Unauthenticated RCEsocradar.io · Apr 1, 2026
-
NCSC Urges Immediate Patching of F5 BIG-IP Bugwww.infosecurity-magazine.com · Mar 31, 2026
-
Fortinet BIG-IP Vulnerability Reclassified as RCE, Under Exploitationwww.darkreading.com · Mar 30, 2026
-
Vulnerability affecting F5 BIG-IP APMwww.ncsc.gov.uk · Mar 30, 2026
-
F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wildwww.securityweek.com · Mar 30, 2026
-
U.S. CISA adds a flaw in F5 BIG-IP AMP to its Known Exploited Vulnerabilities catalogsecurityaffairs.com · Mar 28, 2026
-
CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitationthehackernews.com · Mar 28, 2026