CVE-2025-1098 | Kubernetes ingress-nginx up to 1.11.4/1.12.0 Ingress Annotation IngressNightmare input validation (Issue 131008 / Nessus ID 233357)
A vulnerability, which was classified as very critical, has been found in Kubernetes ingress-nginx up to 1.11.4/1.12.0. Affected by this issue is some unknown functionality of the component Ingress Annotation Handler. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2025-1098. The attack is possible to be carried out remotely. No exploit exists.