Known vulnerabilities in NGINX Plus R36 P5
Vendor:
F5 Networks
Software:
NGINX Plus
Version:
R36 P5
Software CPE:
cpe:2.3:a:f5_networks:nginx_plus:*:*:*:*:*:*:*:*
Website:
https://f5.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Vulnerabilities by Severity
37.0.6.1
37.1.1.1
37.0.6
37.0.5
37.0.4
37.1.1
37.1.0
37.0.3.1
R36 P7
R36 P6
37.0.2.1
R32 P7
R36 P5
37.0.1.1
37.0.0
R32 P6
R36 P4
R32 P5
R35 P2
R36 P3
R34 P1
R34
R32 P4
R35 P1
R36 P2
R36 P1
R36
R32 P3
R33 P3
R34 P2
R35
R28
R29
R32 P2
R33 P2
R33 P1
R33
R31 P3
R32 P1
R31 P2
R32
R31 P1
R30 P2
R30 P1
R31
R30
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU137847 - Heap-based Buffer Overflow CVE-2026-42533 |
CWE-122 | High | R36 P7, 37.0.3.1 | 16.07.2026 |
SB2026071606 SB20260721112 SB20260721113 and 14 more |
||
| #VU137846 - Use of Uninitialized Resource CVE-2026-60005 |
CWE-908 | High | R36 P7, 37.0.3.1 | 16.07.2026 |
SB2026071606 SB20260721112 SB20260721113 and 11 more |
||
| #VU137845 - Use After Free CVE-2026-56434 |
CWE-416 | Medium | R36 P7, 37.0.3.1 | 16.07.2026 |
SB2026071606 SB20260721112 SB20260721113 and 11 more |
||
| #VU134864 - Out-of-bounds read CVE-2026-48142 |
CWE-125 | Medium | R36 P6, 37.0.2.1 | 18.06.2026 |
SB2026061844 SB2026061845 SB2026061846 and 10 more |
||
| #VU134861 - Heap-based Buffer Overflow CVE-2026-42055 |
CWE-122 | High | R36 P6, 37.0.2.1 | 18.06.2026 |
SB2026061844 SB2026061845 SB2026061846 and 13 more |