CVE-2026-22549

A

vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

References
Link Resource
https://my.f5.com/manage/s/article/K000157960 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:f5:big-ip_container_ingress_services:*:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_container_ingress_services:*:*:*:*:*:*:*:*
OR cpe:2.3:a:kubernetes:kubernetes:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift:-:*:*:*:*:*:*:*

History

13 Feb 2026, 21:45

Type Values Removed Values Added
CPE cpe:2.3:a:f5:big-ip_container_ingress_services:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift:-:*:*:*:*:*:*:*
cpe:2.3:a:kubernetes:kubernetes:-:*:*:*:*:*:*:*
References () https://my.f5.com/manage/s/article/K000157960 - () https://my.f5.com/manage/s/article/K000157960 - Vendor Advisory
First Time Redhat openshift
F5
Redhat
Kubernetes
F5 big-ip Container Ingress Services
Kubernetes kubernetes
CWE NVD-CWE-noinfo

04 Feb 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-04 16:16

Updated : 2026-02-13 21:45


NVD link : CVE-2026-22549

Mitre link : CVE-2026-22549

CVE.ORG link : CVE-2026-22549


JSON object : View

CWE
CWE-250

Execution with Unnecessary Privileges

NVD-CWE-noinfo