logo

Active Exploitation of RCE Vulnerability in F5 BIG-IP APM Systems

ID: 5e153fff-7031-55d1-a2f0-65d68d3a1509

STIX ID: report--5e153fff-7031-55d1-a2f0-65d68d3a1509

Feed Name: ThreatCluster

Threat Score
90/100

Date Published: 2026-03-28

Date Updated: 2026-04-02

...
...

A critical unauthenticated remote code execution vulnerability (CVE-2025-53521) in F5 BIG-IP APM with a CVSS score of 9.8 is being actively exploited; CISA added it to its Known Exploited Vulnerabilities catalog following an F5-confirmed breach attributed to a nation-state actor. Organizations using F5 BIG-IP APM are at high risk and should follow vendor and CISA guidance to mitigate exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.