https://seclists.org/oss-sec/2026/q1/140: [kubernetes] Multiple issues in ingss-nginx
Published Feb 2, 2026
·Updated
Affected Software
1 affected component
kubernetes/ingress-nginx<1.13.7, <1.14.3
Frequently Asked Questions
1
What is the severity of CVE-2026-1580?
CVE-2026-1580 has been identified with a high severity ranking due to potential exploitation risks.
2
What is the vulnerability associated with CVE-2026-24512?
CVE-2026-24512 features a security flaw that could lead to unauthorized access or manipulation of the ingress-nginx system.
3
How do I fix CVE-2026-24513?
To mitigate CVE-2026-24513, upgrade to the latest version of ingress-nginx where the vulnerability has been addressed.
4
Are there any known exploits for CVE-2026-1580?
Currently, no public exploits have been reported for CVE-2026-1580, but the vulnerability should still be taken seriously.
5
What systems are affected by CVE-2026-24512?
CVE-2026-24512 affects all versions of ingress-nginx prior to the latest patched release.