CVE-2026-22549

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
04/02/2026
Last modified:
13/02/2026

Description

A vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:f5:big-ip_container_ingress_services:*:*:*:*:*:*:*:* 1.0.0 (including) 1.14.0 (including)
cpe:2.3:a:f5:big-ip_container_ingress_services:*:*:*:*:*:*:*:* 2.0.0 (including) 2.2.0.2 (excluding)
cpe:2.3:a:kubernetes:kubernetes:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools