{"api_version":"v1","generated_at":"2026-10-09T09:40:00+00:00","product":{"cve_count":13,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-f5-big-ip-apm-dcbb7dc56595","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"BIG-IP APM","next_cursor":null,"observations":[{"affected":"BIG-IP: 21.1.0 < Hotfix-BIGIP-21.1.0.2.0.30.22-ENG, 17.5.0 < Hotfix-BIGIP-17.5.1.9.0.160.12-ENG, 17.1.0 < Hotfix-BIGIP-17.1.3.5.0.41.14-ENG","affected_versions_present":true,"cve_id":"CVE-2026-94127","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94127","fixed":"The Cyber Centre strongly recommends that organizations running affected F5 BIG\u2011IP APM deployments upgrade to the following vendor-supported fixed hotfix releases: Affected product Affected versions Fixed Versions BIG IP APM Versions 17.1.0 prior to Hotfix-BIGIP-17.1.3.5.0.41.14-ENG Version 17.1.0 Hotfix-BIGIP-17.1.3.5.0.41.14-ENG BIG IP APM Versions 17.5.0 prior to Hotfix-BIGIP-17.5.1.9.0.160.12-ENG Version 17.5.0 Hotfix-BIGIP-17.5.1.9.0.160.12-ENG BIG IP APM Versions 21.1.0 prior to Hotfix-BIGIP-21.1.0.2.0.30.22-ENG Version 21.1.0 Hotfix-BIGIP-21.1.0.2.0.30.22-ENG The Cyber Centre also recommends organizations to: Identify vulnerable BIG IP systems that have both an APM access policy and an OAuth profile configured on a virtual server. Apply the vendor-provided iRule (contact F5 Support to obtain the iRule) Footnote 1 . Review access logs for indicators of compromise (IoC), particularly OAuth authentication failures especially in rapid succession or large volume Footnote 1 . Also review administrative accounts, access policies for any signs of suspicious activity. Upgrade to a vendor-supported fixed software version as soon as possible. Ensure management interfaces are restricted to trusted administrative networks. Follow F5 guidance for vulnerability remediation and validation following patch deployment. Note: Organizations operating Common Criteria Footnote 5 evaluated configurations should review F5's advisory Footnote 1 and apply the recommended updates in accordance with their change management and certification requirements. In addition, the Cyber Centre strongly recommends that organizations review and implement the Cyber Centre\u2019s Top 10 IT Security Actions Footnote 6 with an emphasis on the following topics: Consolidating, monitoring, and defending Internet gateways Patch operating systems and applications Harden operating systems and applications Isolate web-facing applications Should activity matching the content of this alert be discovered, recipients are encouraged to report via My Cyber Portal , or email contact@cyber.gc.ca .","last_modified":"2026-09-23T03:55:44.614Z","patch_url":"https://www.cyber.gc.ca/en/alerts-advisories/al26-022-vulnerability-impacting-f5-big-ip-access-policy-manager-apm-cve-2026-94127","primary_source":"","published":"2026-09-22T14:17:42.730Z"},{"affected":"14.1.x < 14.1.5.1; 15.1.x < 15.1.6.1; 16.1.x < 16.1.3.1","affected_versions_present":true,"cve_id":"CVE-2022-35245","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-35245","fixed":"13.1.0 < 13.1.x*; 17.0.0 < 17.0.x*","last_modified":"2024-09-16T20:48:20.287Z","patch_url":"https://support.f5.com/csp/article/K58235223","primary_source":"","published":"2022-08-04T17:49:32.276Z"},{"affected":"14.1.x < 14.1.5; 15.1.x < 15.1.6.1; 16.1.x < 16.1.3","affected_versions_present":true,"cve_id":"CVE-2022-33203","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-33203","fixed":"13.1.0 < 13.1.x*; 17.0.0 < 17.0.x*","last_modified":"2024-09-17T03:38:18.177Z","patch_url":"https://support.f5.com/csp/article/K52534925","primary_source":"","published":"2022-08-04T17:46:20.481Z"},{"affected":"15.1.x < 15.1.4; 16.1.x < 16.1.1","affected_versions_present":true,"cve_id":"CVE-2022-31473","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31473","fixed":"13.1.0 < 13.1.x*; 14.1.0 < 14.1.x*; 17.0.0 < 17.0.x*","last_modified":"2024-09-17T03:44:13.790Z","patch_url":"https://support.f5.com/csp/article/K34893234","primary_source":"","published":"2022-08-04T17:45:54.843Z"},{"affected":"BIG-IP APM: 12.1.x, 11.6.x, 16.1.x < 16.1.2.2, 15.1.x < 15.1.5.1, 14.1.x < 14.1.4.6, 13.1.x < 13.1.5; BIG-IP APM Clients: 7.x < 7.2.1.5","affected_versions_present":true,"cve_id":"CVE-2022-29263","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29263","fixed":"BIG-IP APM: 17.0.0 < 17.0.x*","last_modified":"2026-10-08T21:24:18.971Z","patch_url":"https://support.f5.com/csp/article/K33552735","primary_source":"","published":"2022-05-05T16:43:25.102Z"},{"affected":"12.1.x; 11.6.x; 16.1.x < 16.1.2.2; 15.1.x < 15.1.5.1; 14.1.x < 14.1.4.6; 13.1.x < 13.1.5; 7.x < 7.2.1.5","affected_versions_present":true,"cve_id":"CVE-2022-28714","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-28714","fixed":"17.0.0 < 17.0.x*","last_modified":"2024-09-16T17:18:27.730Z","patch_url":"https://support.f5.com/csp/article/K54460845","primary_source":"","published":"2022-05-05T16:40:53.297Z"},{"affected":"12.1.x; 11.6.x; 16.1.x < 16.1.2.2; 15.1.x < 15.1.5.1; 14.1.x < 14.1.4.6; 13.1.x < 13.1.5; 7.x < 7.2.1.5","affected_versions_present":true,"cve_id":"CVE-2022-27636","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-27636","fixed":"17.0.0 < 17.0.x*","last_modified":"2024-09-17T01:56:56.866Z","patch_url":"https://support.f5.com/csp/article/K57110035","primary_source":"","published":"2022-05-05T16:13:46.323Z"},{"affected":"16.1.x < 16.1.2.2; 15.1.x < 15.1.5.1","affected_versions_present":true,"cve_id":"CVE-2022-27634","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-27634","fixed":"14.1.x; 13.1.x; 12.1.x; 11.6.x; 17.0.0 < 17.0.x*","last_modified":"2024-09-17T02:47:20.034Z","patch_url":"https://support.f5.com/csp/article/K57555833","primary_source":"","published":"2022-05-05T16:12:56.277Z"},{"affected":"16.1.x; 15.1.x; 14.1.x; 13.1.x; 12.1.x; 11.6.x; All < 9.0","affected_versions_present":true,"cve_id":"CVE-2022-27230","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-27230","fixed":"17.0.0 < 17.0.x*","last_modified":"2024-09-17T01:15:51.928Z","patch_url":"https://support.f5.com/csp/article/K21317311","primary_source":"","published":"2022-05-05T16:09:59.156Z"},{"affected":"12.1.x; 11.6.x; 16.1.x < 16.1.2.2; 15.1.x < 15.1.5.1; 14.1.x < 14.1.4.6; 13.1.x < 13.1.5","affected_versions_present":true,"cve_id":"CVE-2022-27181","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-27181","fixed":"17.0.0 < 17.0.x*","last_modified":"2024-09-16T16:39:02.704Z","patch_url":"https://support.f5.com/csp/article/K93543114","primary_source":"","published":"2022-05-05T16:07:20.273Z"},{"affected":"15.0.0-15.1.0; 14.0.0-14.1.2.3; 13.1.0-13.1.3.2; 12.1.0-12.1.5; 11.5.2-11.6.5.1","affected_versions_present":true,"cve_id":"CVE-2020-5853","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-5853","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T08:39:25.931Z","patch_url":"","primary_source":"","published":"2020-01-14T16:14:02.000Z"},{"affected":"15.0.0-15.0.1.1; 14.1.0-14.1.2; 14.0.0-14.0.1; 13.1.0-13.1.3.1; 12.1.0-12.1.5; 11.5.2-11.6.5.1","affected_versions_present":true,"cve_id":"CVE-2019-19150","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-19150","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T02:09:39.374Z","patch_url":"","primary_source":"","published":"2019-12-23T17:35:53.000Z"},{"affected":"14.0.0-14.1.0.1; 13.0.0-13.1.1.3; 12.1.1 HF2-12.1.4","affected_versions_present":true,"cve_id":"CVE-2019-6609","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-6609","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T20:23:22.059Z","patch_url":"","primary_source":"","published":"2019-04-15T14:43:15.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"F5"}}
