CVE-2026-24514 Kubernetes Official CVE Feed 3 days 5 hours ago ingress-nginx Admission Controller denial of service
CVE-2026-24513 Kubernetes Official CVE Feed 3 days 5 hours ago ingress-nginx auth-url protection bypass
CVE-2026-24512 Kubernetes Official CVE Feed 3 days 5 hours ago ingress-nginx rules.http.paths.path nginx configuration injection
CVE-2026-1580 Kubernetes Official CVE Feed 3 days 5 hours ago ingress-nginx auth-method nginx configuration injection
CVE-2025-14269 Kubernetes Official CVE Feed 1 month 2 weeks ago Credential caching in Headlamp with Helm enabled
CVE-2025-13281 Kubernetes Official CVE Feed 2 months ago Portworx Half-Blind SSRF in kube-controller-manager
CVE-2025-9708 Kubernetes Official CVE Feed 4 months 2 weeks ago Kubernetes C# Client: improper certificate validation in custom CA mode may lead to man-in-the-middle attacks
CVE-2025-7445 Kubernetes Official CVE Feed 5 months ago secrets-store-sync-controller discloses service account tokens in logs
CVE-2025-5187 Kubernetes Official CVE Feed 5 months 3 weeks ago Nodes can delete themselves by adding an OwnerReference
CVE-2025-7342 Kubernetes Official CVE Feed 6 months 2 weeks ago VM images built with Kubernetes Image Builder Nutanix or OVA providers use default credentials for Windows images if user did not override
CVE-2025-4563 Kubernetes Official CVE Feed 7 months 4 weeks ago Nodes can bypass dynamic resource allocation authorization checks
CVE-2025-1974 Kubernetes Official CVE Feed 10 months 1 week ago ingress-nginx admission controller RCE escalation
CVE-2025-1098 Kubernetes Official CVE Feed 10 months 1 week ago ingress-nginx controller configuration injection via unsanitized mirror annotations
CVE-2025-1097 Kubernetes Official CVE Feed 10 months 1 week ago ingress-nginx controller configuration injection via unsanitized auth-tls-match-cn annotation
CVE-2025-24514 Kubernetes Official CVE Feed 10 months 1 week ago ingress-nginx controller configuration injection via unsanitized auth-url annotation
CVE-2025-24513 Kubernetes Official CVE Feed 10 months 1 week ago ingress-nginx controller auth secret file path traversal vulnerability
CVE-2025-1767 Kubernetes Official CVE Feed 10 months 3 weeks ago GitRepo Volume Inadvertent Local Repository Access
CVE-2025-0426 Kubernetes Official CVE Feed 11 months 3 weeks ago Node Denial of Service via kubelet Checkpoint API
CVE-2024-9042 Kubernetes Official CVE Feed 1 year ago Command Injection affecting Windows nodes via nodes/*/logs/query API
CVE-2024-10220 Kubernetes Official CVE Feed 1 year 2 months ago Arbitrary command execution through gitRepo volume