F5-K000157960: Medium severity F5 BIG-IP Container Ingress Services for Kubernetes and OpenShift vulnerability
Published Feb 4, 2026
·Updated
A vulnerability exists in F5 BIG-IP Container Ingress Services that may allow excessive permissions to read cluster secrets.
Affected Software
2 affected componentsFixes available
F5 BIG-IP Container Ingress Services for Kubernetes and OpenShift>=2.0.0<=2.20.1
2.20.22.20.1
F5 BIG-IP Container Ingress Services for Kubernetes and OpenShift>=1.0.0<=1.14.0
Event History
Feb 4, 2026
Advisory Published
via F5·02:22 PM
Data Sourced
via F5·02:22 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of F5-K000157960?
The severity of F5-K000157960 is critical as it allows excessive permissions to read sensitive cluster secrets.
2
How do I fix F5-K000157960?
To fix F5-K000157960, upgrade to a remedied version of F5 BIG-IP Container Ingress Services that addresses the permissions issue.
3
What versions are affected by F5-K000157960?
F5-K000157960 affects versions of F5 BIG-IP Container Ingress Services between 1.0.0 and 1.14.0, and between 2.0.0 and 2.20.1.
4
What are the potential impacts of F5-K000157960?
The potential impacts of F5-K000157960 include unauthorized access to sensitive information within the Kubernetes or OpenShift cluster.
5
Is there a workaround for F5-K000157960?
Currently, no official workarounds for F5-K000157960 have been provided; upgrading to a fixed version is recommended.