📦 Ingress Nginx

by Kubernetes

🔍 What is Ingress Nginx?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-5043

HIGH CVSS 7.6 Oct 25, 2023

This CVE allows attackers to inject malicious annotations into Ingress nginx configurations, leading to arbitrary command execution on the host system. It affects Kubernetes clusters using ingress-ngi...

CVE-2022-4886

HIGH CVSS 8.8 Oct 25, 2023

This vulnerability allows attackers to bypass path sanitization in ingress-nginx by using the log_format directive, potentially enabling path traversal attacks. It affects Kubernetes ingress-nginx dep...

CVE-2021-25745

HIGH CVSS 7.6 May 6, 2022

CVE-2021-25745 is a vulnerability in ingress-nginx where users with permissions to create or update Ingress objects can exploit the path field to obtain the controller's credentials. These credentials...