logo

F5 BigIP APM: Remote Code Execution

ID: 1a255ab3-e64c-5acd-bc24-1fad4547e8d1

STIX ID: report--1a255ab3-e64c-5acd-bc24-1fad4547e8d1

Feed Name: Kudelski Security

Threat Score
90/100

Date Published: 2026-03-30

Date Updated: 2026-07-22

...
...

**Executive Summary:** A critical vulnerability (CVE-2025-53521) in F5 BIG-IP Access Policy Manager (APM) enabling potential unauthenticated remote code execution has been added to CISA's Known Exploited Vulnerabilities catalog; multiple 15.x–17.x releases are affected, F5 has published IOCs and observed TTPs, and immediate remediation by installing the listed fixed versions is recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.