Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2022-43284
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the…
Njs
after 0.7.4
HIGH 7.5
CVE-2022-43285
Nginx NJS v0.7.4 was discovered to contain a segmentation violation in njs_promise_reaction_job. NOTE: the vendor disputes the significance of this r…
Njs
Patch available
HIGH 8.8
CVE-2022-41835
In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.5.0, excessive file permissions in F5OS allows an authenticated local attacker to …
F5os A
1.1.0 / 1.5.0+
HIGH 7.5
CVE-2022-41787
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, when D…
Big Ip Domain Name System
13.1.5.1 / 14.1.5.1+
HIGH 7.5
CVE-2022-41806
In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with IPv6/IPv4 translation rules is…
Big Ip Advanced Firewall Manager
15.1.5.1 / 16.1.3.2+
HIGH 7.5
CVE-2022-41832
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, when a…
Big Ip Access Policy Manager
13.1.5.1 / 14.1.5.1+
HIGH 7.5
CVE-2022-41833
In all BIG-IP 13.1.x versions, when an iRule containing the HTTP::collect command is configured on a virtual server, undisclosed requests can cause T…
Big Ip Access Policy Manager
after 13.1.5
HIGH 7.5
CVE-2022-41836
When an 'Attack Signature False Positive Mode' enabled security policy is configured on a virtual server, undisclosed requests can cause the bd proce…
Big Ip Advanced Web Application Firewall
15.1.7 / 16.1.3.1+
MEDIUM 6.5
CVE-2022-41813
In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when BIG-IP is provisioned with PEM or …
Big Ip Advanced Firewall Manager
14.1.5 / 15.1.6.1+
MEDIUM 5.5
CVE-2022-41780
In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.4.0, a directory traversal vulnerability exists in an undisclosed location of the …
F5os A
1.1.0 / 1.4.0+
HIGH 7.8
CVE-2022-41741
NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R…
Nginx
after 2.4.0
HIGH 7.5
CVE-2022-41624
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.2, 15.1.x before 15.1.7, 14.1.x before 14.1.5.2, and 13.1.x before 13.1.5.1, when a s…
Big Ip Access Policy Manager
13.1.5.1 / 14.1.5.2+
HIGH 7.5
CVE-2022-41691
When a BIG-IP Advanced WAF/ASM security policy is configured on a virtual server, undisclosed requests can cause the bd process to terminate.
Big Ip Advanced Web Application Firewall
14.1.5.2+
HIGH 7.2
CVE-2022-41617
In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, When the Advanced WAF / ASM module is…
Big Ip Advanced Web Application Firewall
13.1.5.1 / 14.1.5.1+
HIGH 7.1
CVE-2022-41742
NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R…
Nginx
after 2.4.0
HIGH 7.0
CVE-2022-41743
NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_hls_module that might allow a local attacker to corrupt NGIN…
Nginx Ingress Controller
after 2.4.0
MEDIUM 6.5
CVE-2022-41770
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BIG-…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.7+
HIGH 7.5
CVE-2022-36795
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, and 14.1.x before 14.1.5.1, when an LTM TCP profile with Aut…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.7+
MEDIUM 5.5
CVE-2022-38890
Nginx NJS v0.7.7 was discovered to contain a segmentation violation via njs_utf8_next at src/njs_utf8.h
Njs
Patch available
CRITICAL 9.8
CVE-2022-35728
In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BI…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.6.1+
CRITICAL 9.1
CVE-2022-34865
In BIG-IP Versions 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, Traffic Intelligence feeds, which use HTTPS, do not veri…
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
CRITICAL 9.1
CVE-2022-35243
In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.5.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when running in Appliance mode, an…
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
HIGH 7.5
CVE-2022-34651
In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, when an LTM Client or Server SSL profile with TLS 1.3 enabled is configured on …
Big Ip Access Policy Manager
15.1.6.1 / 16.1.3.1+
HIGH 7.5
CVE-2022-34655
In BIG-IP Versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when an iRule containing the HTTP::payload command is co…
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
HIGH 7.5
CVE-2022-34844
In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, and all versions of BIG-IQ 8.x, when the Data Plane Development Kit (DPDK)/Elas…
Big Ip Access Policy Manager
15.1.6.1 / 16.1.3.1+
HIGH 7.5
CVE-2022-34862
In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when an LTM virtual server is co…
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
HIGH 7.5
CVE-2022-35236
In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when an HTTP2 profile is configured on a virtual server,…
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
HIGH 7.5
CVE-2022-35240
In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when the Message Routing (MR) Message Queuing Telemetry …
Big Ip Access Policy Manager
14.1.5 / 15.1.6.1+
HIGH 7.5
CVE-2022-35245
In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5.1, when a BIG-IP APM access policy is configured on a vir…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.6.1+
HIGH 7.2
CVE-2022-35735
In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, an authenticated attacker with…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.6.1+