Saturday, 11 Apr 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Global Market > Four new vulnerabilities found in Ingress NGINX
Global Market

Four new vulnerabilities found in Ingress NGINX

Last updated: February 6, 2026 7:57 am
Published February 6, 2026
Share
container orchestration, clusters, clustering, Kubernetes
SHARE

NGINX is a reverse proxy/load balancer that typically acts because the front-end internet visitors receiver and directs it to the applying service for information transformation. Ingress NGINX is a model utilized in Kubernetes because the controller for visitors coming into the infrastructure. It takes care of mapping visitors to pods of containers working jobs with out exposing the pods themselves.  Meghu says Ingress NGINX is the first visitors entry level, and is efficient as a result of its means to reload its configuration on the fly, permitting it to regulate to modifications inside a Kubernetes cluster.

These vulnerabilities solely have an effect on Ingress NGINX variations 1.13.7 and beneath, and 1.14.3 and beneath, if they’re put in on a Kubernetes cluster.

The warning comes simply weeks earlier than, as introduced at KubeCon in November, support for Ingress NGINX ends. Beginning in March, the undertaking will not obtain energetic upkeep, safety patches, or bug fixes.

Consultants have been urging Kubernetes directors to shift to a brand new controller ever since. They advocate Kubernetes Gateway API as the usual for visitors administration. Meghu notes it’s vendor impartial and broadly used. Different choices are controllers akin to Cilium Ingress, Traefik, or HAProxy Ingress.

Along with CVE-2026-24512, the opposite new vulnerabilities are CVE-2026-24513, thought-about by Meghu a low threat since an attacker must have a config containing particular errors to use, and CVE-2026-24514, which Meghu considers a medium threat. The controller may very well be topic to a denial of service if an attacker overwhelms it with requests.

These are simply the newest points with Ingress NGINX. Simply over a 12 months in the past, researchers at Wiz found a gaggle of holes dubbed IngressNightmare. They can enable unauthenticated customers to inject malicious NGINX configurations and execute malicious code into the Ingress NGINX pod, doubtlessly exposing all cluster secrets and techniques and resulting in cluster takeover.

See also  Network World awards: Nominations now open for Best of Enterprise Networking (BENNY) Awards 2024

Source link

TAGGED: Ingress, Nginx, vulnerabilities
Share This Article
Twitter Email Copy Link Print
Previous Article Forfusion partners with Stellium to support AI Growth Zone Forfusion partners with Stellium to support AI Growth Zone
Next Article DiDAX: Innovating DNA-based data applications DiDAX: Innovating DNA-based data applications
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

CrowdStrike incident has CIOs rethinking their cloud strategies

“Reliability of the instruments and companies cybersecurity groups use is crucial within the face of…

July 23, 2024

Flock Safety Raises $275M at $7.5 Billion Valuation

Flock Safety, an Atlanta, GA-based supplier of a security expertise platform, raised $275M in funding,…

March 16, 2025

Neuromorphic computer promises to slash AI energy consumption

The Nitride Expertise Centre (NTC), a microelectronics consortium led by Technische Universität Braunschweig, is pioneering…

January 27, 2026

Google’s Quantum Leap and AI Data Center Developments

With information heart information shifting quicker than ever, we wish to make it simple for…

December 13, 2024

Vixor Raises $2M in Seed Funding

Vixor, a Victoria, Seychelles-based automated liquidity platform supplier, raised $2M in Seed funding. Backers weren't disclosed.…

July 13, 2025

You Might Also Like

Large AWS sign. Amazon Web Services (AWS) is a subsidiary of Amazon that provides on-demand cloud computing platforms - Las Vegas, Nevada, USA - December 3, 2019
Global Market

AI demand is so high, AWS customers are trying to buy out its entire capacity

By saad
Why sovereignty now shapes data centre planning in Europe
Global Market

Why sovereignty now shapes data centre planning in Europe

By saad
Heat emission from the chimneys of a large data and server complex.
Global Market

OpenAI puts part of Stargate project on hold over runaway power costs

By saad
EMEA data centre vacancy hits record low as AI demand outpaces supply
Global Market

EMEA data centre vacancy hits record low as AI demand outpaces supply

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.