ZoomEye Finds 1,577,590 F5 BIG-IP Matches After CVE-2026-94127 KEV Entry
CISA added F5 BIG-IP APM flaw CVE-2026-94127 to its Known Exploited Vulnerabilities catalog on 22 September 2026. A ZoomEye query for the app="F5 BIG-IP" fingerprint returned 1,577,590 matches the next day, but the count covers the whole product family and does not show how many systems are vulnerable or expose their management interface.
- CISA added CVE-2026-94127 to KEV on 22 September 2026
- ZoomEye: 1,577,590 matches for the F5 BIG-IP fingerprint on 23 September
- The fingerprint mixes load balancers, APM and ASM, not just affected builds
- Exploitation has been observed, so patching is not optional
Read next
Security