logo

IngressNightmare: Understanding CVE‑2025‑1974 in Kubernetes Ingress-NGINX

ID: 90348868-9e49-586b-a420-d009d36ba8c7

STIX ID: report--90348868-9e49-586b-a420-d009d36ba8c7

Feed Name: Fortinet Blog

Threat Score
90/100

Date Published: 2025-04-23

Date Updated: 2026-04-27

...
...

**IngressNightmare (CVE‑2025‑1974)** is a critical remote code execution vulnerability chain in the Kubernetes Ingress‑NGINX admission webhook that can be exploited from within a cluster network to compromise the ingress controller pod and potentially the entire cluster; the report details the exploit steps, PoC, recommended patches (v1.12.1+/v1.11.5+), network and RBAC mitigations, and detection/coverage by Lacework FortiCNAPP and Fortinet products.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.