CVE-2025-1974: vulnerabilities that could make it easy for attackers to take over your Kubernetes cluster
-
cross-posted from: https://lemmy.world/post/27407351
When combined with today’s other vulnerabilities, CVE-2025-1974 means that anything on the Pod network has a good chance of taking over your Kubernetes cluster, with no credentials or administrative access required.
-
S [email protected] shared this topic on
-
cross-posted from: https://lemmy.world/post/27407351
When combined with today’s other vulnerabilities, CVE-2025-1974 means that anything on the Pod network has a good chance of taking over your Kubernetes cluster, with no credentials or administrative access required.
Great callout, thanks for posting
-
cross-posted from: https://lemmy.world/post/27407351
When combined with today’s other vulnerabilities, CVE-2025-1974 means that anything on the Pod network has a good chance of taking over your Kubernetes cluster, with no credentials or administrative access required.
Isn't this only for people running NGINX?
-
Isn't this only for people running NGINX?
Yes it's defects in the ingress-nginx controller package.