15 lipca 2026 r. firma F5 opublikowała ostrzeżenie dotyczące bezpieczeństwa w celu usunięcia luk w następujących produktach:

  • Agent NGINX – wersje od 2.37.0 do 2.46.5
  • Menedżer instancji NGINX – wersje od 2.17.1 do 2.22.1
  • NGINX Plus – wersje od 37.0.0.1 do 37.0.2.1
  • NGINX Plus – wersje od R33 do R36
  • NGINX Open Source – wiele wersji
  • Menedżer instancji NGINX – wersje od 2.17.0 do 2.22.1
  • F5 WAF dla NGINX – wersje od 5.9.0 do 5.13.3
  • NGINX App Protect WAF – wersje od 5.2.0 do 5.8.0
  • NGINX App Protect WAF – wersje od 4.11.0 do 4.16.0
  • NGINX Gateway Fabric – wersje od 2.0.0 do 2.6.6
  • NGINX Gateway Fabric – wersje od 1.3.0 do 1.6.2
  • NGINX Ingress Controller – wiele wersji
  • BIG-IP Next SPK – wiele wersji
  • BIG-IP Next CNF – wiele wersji
  • BIG-IP Next dla Kubernetes – wersje od 2.0.0 do 2.3.1
  • BIG-IP (wszystkie moduły) – wiele wersji
OpisProdukt
K000161800: NGINX Ingress Controller vulnerability CVE-2026-55723NGINX Ingress Controller
K000161834: NGINX Ingress Controller vulnerability CVE-2026-52865NGINX Ingress Controller
K000161971: NGINX Agent vulnerability CVE-2026-60062NGINX Agent, NGINX Instance Manager
K000162097: NGINX map directive and regex matching vulnerability CVE-2026-42533NGINX Plus, NGINX Open Source, NGINX Instance Manager, F5 WAF for NGINX, NGINX App Protect WAF, NGINX Gateway Fabric, NGINX Ingress Controller
K000162098: NGINX ngx_http_ssi_module vulnerability CVE-2026-56434NGINX Plus, NGINX Open Source, NGINX Instance Manager, F5 WAF for NGINX, NGINX App Protect WAF, NGINX Gateway Fabric, NGINX Ingress Controller
K000162100: NGINX ngx_http_slice_module vulnerability CVE-2026-60005NGINX Plus, NGINX Open Source, NGINX Instance Manager, F5 WAF for NGINX, NGINX App Protect WAF, NGINX Gateway Fabric, NGINX Ingress Controller
K000162101: NGINX Plus ngx_stream_mqtt_filter_module vulnerability CVE-2026-60065NGINX Plus, F5 WAF for NGINX, NGINX App Protect WAF, NGINX Gateway Fabric, NGINX Ingress Controller
K000162231: BIG-IP HTTP/2 vulnerability CVE-2026-59762BIG-IP, BIG-IP Next SPK, BIG-IP Next CNF, BIG-IP Next for Kubernetes