Known Vulnerabilities for Nginx by F5
Listed below are 10 of the newest known vulnerabilities associated with "Nginx" by "F5".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88879 json | Traefik is an HTTP reverse proxy and load balancer. In Traefik v1.x, v2.x through v2.11.55, and v3.0.0 through v3.7.11, heade... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88877 json | Traefik is a HTTP reverse proxy and load balancer. In versions >= v3.7.0 and <= v3.7.11, the Kubernetes ingress-nginx provide... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88874 json | AVideo through revision c3edcc274c389816d434acadac07ee78eaf330c1 (master, 2026-08-23) does not enforce the Live stream passwo... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88011 json | Traefik is an open source HTTP reverse proxy and load balancer. Prior to 2.11.56, and from 3.0.0 until 3.7.12, a client-suppl... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-85596 json | Traefik versions >= v3.7.0 and <= v3.7.10 contain an authentication bypass in the Kubernetes Ingress NGINX provider. The TLS ... | Not Provided | 2026-09-04 | 2026-09-10 |
| CVE-2026-80208 json | APITable through 1.13.0-beta.1 annotates both getUserHistories and closePausedUserAccount in InternalUserController with requ... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-80207 json | APITable through 1.13.0-beta.1 annotates the create handler of InternalNotifyController with requiredLogin = false. ResourceI... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-78689 json | Description NGINX JavaScript (njs) has a vulnerability in the XML module's namespace prefix list parser, reachable through ... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-78552 json | The Okta Access Gateway does not apply its Lua directive restriction to the application-level custom configuration field. The... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-78545 json | The Okta Access Gateway does not sanitize the application label field before including it in the generated nginx configuratio... | Not Provided | 2026-09-08 | 2026-09-10 |