← Vulnerability feed

Vulnerability record · CVE-2021-25742 · published 29 October 2021

CVE-2021-25742: Kubernetes ingress-nginx improper input validation vulnerability

Kubernetes · Ingress Nginx

A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the custom snippets feature to obtain all secrets in the cluster.

7.1 CVSS 3.1 High EPSS 2.1% · top 19.4% CWE-20 · Improper input validation
7.1CVSS 3.1 base score, v2 5.5
2.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
6References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the custom snippets feature to obtain all secrets in the cluster.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://github.com/kubernetes/ingress-nginx/issues/7837 ExploitIssue TrackingMitigationThird Party Advisory
https://groups.google.com/g/kubernetes-security-announce/c/mT4JJxi9tQY Mailing ListMitigationThird Party Advisory
https://security.netapp.com/advisory/ntap-20211203-0001/ Third Party Advisory
https://github.com/kubernetes/ingress-nginx/issues/7837 ExploitIssue TrackingMitigationThird Party Advisory
https://groups.google.com/g/kubernetes-security-announce/c/mT4JJxi9tQY Mailing ListMitigationThird Party Advisory
https://security.netapp.com/advisory/ntap-20211203-0001/ Third Party Advisory

Track CVE-2021-25742 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2018-1002105Kubernetes kube-apiserver proxy upgrade flaw enables backend accessThe kube-apiserver mishandles error responses to proxied upgrade requests, letting a crafted request establish a connection through the API server to…EPSS 87%analysed8.8CVE-2026-3288Kubernetes ingress-nginx improper input validation vulnerabilityA security issue was discovered in ingress-nginx where the `nginx.ingress.kubernetes.io/rewrite-target` Ingress annotation can be used to inject conf…EPSS 0.71%8.8CVE-2023-5043Kubernetes ingress-nginx improper input validation vulnerabilityIngress nginx annotation injection causes arbitrary command execution.EPSS 2.2%8.8CVE-2023-5044ingress-nginx permanent-redirect annotation code injectionCVE-2023-5044 is a code injection flaw in ingress-nginx reached through the nginx.ingress.kubernetes.io/permanent-redirect annotation, caused by impr…EPSS 57%analysed8.1CVE-2021-25745Kubernetes ingress-nginx improper input validation vulnerabilityA security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the spec.rules[].http.paths[].path fi…EPSS 1.2%8.1CVE-2019-11243Kubernetes vulnerabilityIn Kubernetes v1.12.0-v1.12.4 and v1.13.0, the rest.AnonymousClientConfig() method returns a copy of the provided config, with credentials removed (b…EPSS 1.5%7.5CVE-2020-28362Golang go improper certificate validation vulnerabilityGo before 1.14.12 and 1.15.x before 1.15.4 allows Denial of Service.EPSS 3.9%7.5CVE-2020-28366Golang go code injection vulnerabilityCode injection in the go command with cgo before Go 1.14.12 and Go 1.15.5 allows arbitrary code execution at build time via a malicious unquoted symb…EPSS 2.3%

Source: NIST National Vulnerability Database (record CVE-2021-25742), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.