VYPR
Medium severity6.5NVD Advisory· Published Aug 4, 2022· Updated Jun 17, 2026

CVE-2022-30535

CVE-2022-30535

Description

In versions 2.x before 2.3.0 and all versions of 1.x, An attacker authorized to create or update ingress objects can obtain the secrets available to the NGINX Ingress Controller. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.