← Back to Feed

F5 Products Multiple Vulnerabilities

CVE-2025-48976

July 29, 2026 · HKCERT · Severity: HIGH

This article discloses multiple vulnerabilities in F5 products, specifically BIG-IP Next for Kubernetes and BIG-IP Next SPK. A remote attacker could trigger denial of service, sensitive information disclosure, or remote code execution. No patch is available for CVE-2025-48976.

Key Takeaways

  • Multiple vulnerabilities in F5 products enable denial of service, information disclosure, and remote code execution.
  • No patch is currently available for CVE-2025-48976 affecting BIG-IP Next for Kubernetes and SPK.
  • Affected versions include BIG-IP Next for Kubernetes 2.0.0-2.3.0 and BIG-IP Next SPK 1.7.0-2.0.3.
☕ Buy a Coffee