DirectorySecurity Advisories
Sign In
Security Advisories

CGA-5j3j-q4x2-m97p

Published

Last updated

https://images.chainguard.dev/security/CGA-5j3j-q4x2-m97p
Package

ingress-nginx-controller-fips-1.9

Latest Update
Not affected
Aliases
  • CVE-2018-1002104
  • GHSA-p3x5-5xpx-9phm

Severity

5.3

Medium

CVSS V3

Summary

Kubernetes ingress exposes sensitive information

Description

Versions < 1.5 of the Kubernetes ingress default backend, which handles invalid ingress traffic, exposed prometheus metrics publicly.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images