Excessive Permissions Vulnerability in F5 BIG-IP Container Ingress Services
CVE-2026-22549
6.9MEDIUM
Key Information:
- Vendor
F5
- Vendor
- CVE Published:
- 4 February 2026
What is CVE-2026-22549?
A vulnerability exists in F5 BIG-IP Container Ingress Services that allows unauthorized users to gain excessive permissions, potentially enabling them to read sensitive cluster secrets. This flaw highlights serious implications for the confidentiality and integrity of application services. Users are urged to assess their configurations and ensure they are not using software versions that have reached End of Technical Support (EoTS) as these are not evaluated for risks.
Affected Version(s)
F5 BIG-IP Container Ingress Services 2.0.0 < 2.20.2
F5 BIG-IP Container Ingress Services 1.0.0