CVE-2025-1097 | Kubernetes ingress-nginx up to 1.11.4/1.12.0 auth-tls-match-cn Ingress Annotation IngressNightmare input validation (Issue 131007 / Nessus ID 233357)
A vulnerability, which was classified as very critical, has been found in Kubernetes ingress-nginx up to 1.11.4/1.12.0. This issue affects some unknown processing of the component auth-tls-match-cn Ingress Annotation. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2025-1097. The attack may be initiated remotely. There is no exploit available.