Kubernetes ingress-nginx
This hub aggregates every CVE we track for Kubernetes ingress-nginx, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
0
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 4 most recently published vulnerabilities affecting Kubernetes ingress-nginx.
- CVE-2021-25748Ingress-nginx `path` sanitization can be bypassed with newline character7.6
- CVE-2021-25746Ingress-nginx directive injection via annotations7.6
- CVE-2021-25745Ingress-nginx path can be pointed to service account token file7.6
- CVE-2021-25742Ingress-nginx custom snippets allows retrieval of ingress-nginx serviceaccount token and secrets across all namespaces7.6
Product normalization is registry-driven with AI assist and human review. How it works