CVE-2021-25742
29.10.2021, 04:15
A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the custom snippets feature to obtain all secrets in the cluster.Enginsight
Vendor | Product | Version |
---|---|---|
kubernetes | ingress-nginx | 𝑥 < 0.49.1 |
kubernetes | ingress-nginx | 1.0.0 |
netapp | trident | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References