CVE-2026-22549
Unknown
Unknown - Not Provided
Excessive Permissions Vulnerability in F5 BIG-IP Container Ingress
Publication date: 2026-02-04
Last updated on: 2026-02-13
Assigner: F5 Networks
Description
Description
A vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.Β Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| f5 | big-ip_container_ingress_services | From 1.0.0 (inc) to 1.14.0 (inc) |
| f5 | big-ip_container_ingress_services | From 2.0.0 (inc) to 2.2.0.2 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-250 | The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. |