PT-2025-12716 · Unknown+1 · Ingress-Nginx+1

Nir Ohfeld

+1

·

Published

2025-03-23

·

Updated

2025-04-17

·

CVE-2025-24513

CVSS v3.1

4.8

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions ingress-nginx versions prior to v1.12.1 ingress-nginx versions before v1.11.5 ingress-nginx versions from v1.12.0-beta.0 before v1.12.1
Description A security issue was discovered in ingress-nginx where attacker-provided data are included in a filename by the ingress-nginx Admission Controller feature, resulting in directory traversal within the container. This could result in denial of service, or when combined with other vulnerabilities, limited disclosure of Secret objects from the cluster. The issue affects over 6,500 clusters and could lead to unauthenticated remote code execution (RCE) or secret theft.
Recommendations For versions prior to v1.12.1, update to v1.12.1 or later to fix the vulnerability. For versions before v1.11.5, update to v1.11.5 or later to fix the vulnerability. For versions from v1.12.0-beta.0 before v1.12.1, update to v1.12.1 or later to fix the vulnerability. As a temporary workaround, consider restricting admission controller access until a patch is available.

Fix

DoS

RCE

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-05134
BIT-NGINX-INGRESS-CONTROLLER-2025-24513
CVE-2025-24513
GHSA-242M-6H72-7HGP
GO-2025-3564
OPENSUSE-SU-2025:14937-1

Affected Products

Red Os
Ingress-Nginx