Critical 9.8
CVE-2026-94127
F5 BIG-IP APM Zero-Day RCE Vulnerability (CVE-2026-94127) Exploited in the Wild
Vendor / product: F5 BIG-IP APM
Event date: 2026-09-22
Public PoC: Yes
First tracked by RiskWire: 2026-09-23
Sources & citations (6)
- F5 patches BIG-IP APM zero-day flaw exploited in RCE attacks bleepingcomputer.com · 2026-09-23
- The OAuth Profile Is the Door: F5 BIG-IP APM's Heap Overflow Turns a Network Security Appliance Into an Unauthenticated Entry Point tech.yahoo.com · 2026-09-22
- F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers thehackernews.com · 2026-09-23
- Critical F5 BIG-IP Vulnerability Exploited as Zero-Day securityweek.com · 2026-09-23
- Hackers Exploiting F5 BIG-IP OAuth Server 0-day Flaw to Gain Remote Code Execution cybersecuritynews.com · 2026-09-23
- Critical F5 BIG-IP APM Flaw Actively Exploited for Remote Code Execution gbhackers.com · 2026-09-23
References
See CVE-2026-94127 in context
RiskWire tracks every exploited CVE this week, cross-referenced against CISA KEV with federal remediation deadlines. Filtered to your vendor stack.
Book a 20-min demo →