CVE-2024-23306: F5 BIG-IP Next Cloud-Native Network Functions

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability exists in BIG-IP Next CNF and SPK systems that may allow access to undisclosed sensitive files.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

Affected products

  • F5 BIG-IP Next Cloud-Native Network Functions: from 1.1.0, before 1.2.0 (fixed in 1.2.0)

Published 2024-02-14. Last modified 2026-06-17.