Microsoft Issues Critical F5 Patches for Over 50 Security Vulnerabilities

www.news4hackers.com-microsoft-issues-critical-f5-patches-for-over-50-security-vulnerabilities-microsoft-issues-critical-f5-patches-for-over-50-security-vulnerabilities

F5 Addresses Over 50 Vulnerabilities in BIG-IP, BIG-IQ, and NGINX

F5 has released patches for over 50 vulnerabilities affecting its BIG-IP, BIG-IQ, and NGINX products.

  • High-severity issues:
  • Denial-of-service (DoS) condition in NGINX’s ngx_http_rewrite_module module (CVE-2026-42945)

  • Remote code execution (RCE) vulnerability in BIG-IP (CVE-2026-41957, CVE-2026-34176, CVE-2026-39459)

  • Privilege escalation and restriction bypass in BIG-IP (CVE-2026-41225)

  • Arbitrary file tampering and DoS conditions in BIG-IP

Medium-severity vulnerabilities:

Security protection bypass, privilege escalation, information disclosure, arbitrary system command execution, DoS conditions, code injection, and arbitrary local file tampering.

According to F5, “none of these vulnerabilities appear to have been exploited in the wild.”

Additional information regarding these patches can be found in F5’s quarterly security notification.



About Author

en_USEnglish