Kubernetes Ingress-nginx Controller RCE
What is the Vulnerability? | On March 24, researchers disclosed a set of five vulnerabilities, collectively known as "IngressNightmare,” affecting Ingress-nginx, one of the popular ingress controllers available for Kubernetes. Using Ingress-NGINX is one of the most common methods for exposing Kubernetes applications externally. | |
What is the recommended Mitigation? |
| |
What FortiGuard Coverage is available? |
|
Additional Resources
Releases/Fix
CVE-2025-24513: ingress-nginx controller - auth secret file path traversal vulnerability · Issue #131005 ·
CVE-2025-24514: ingress-nginx controller - configuration injection via unsanitized auth-url annotation · Issue #131006
CVE-2025-1097: ingress-nginx controller - configuration injection via unsanitized auth-tls-match-cn annotation · Issue #131007 ·
CVE-2025-1098: ingress-nginx controller - configuration injection via unsanitized mirror annotations · Issue #131008
CVE-2025-1974: ingress-nginx admission controller RCE escalation · Issue #131009
How Lacework FortiCNAPP Secures Kubernetes Ingress | Video Walkthrough
Potentially Compromised K8s User | Lacework FortiCNAPP | Fortinet Document Library
Kubernetes Activity Policies | Lacework FortiCNAPP | Fortinet Document Library