Skip to main content

Vendor/product archive

f5 / waf CVEs

Beta · best-effort

12 CVEs tagged to f5 / waf4 Critical, 3 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2026-42055

Published Jun 17, 2026

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2…

CVSS 9.2 · Critical
evidence mentions
15
Buzz score
47.7

CVE-2026-9256

Published May 22, 2026

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when a rewrite directive uses a regex pattern with distinct,…

CVSS 9.2 · Critical
evidence mentions
16
Buzz score
48.3
Showing 1-12 of 12 CVEsPage 1 of 1