release
alert
Auto-detect
Apple App Store
Rust Crate (Cargo)
Chocolatey Package
Docker Image
Debian Package (Bookworm)
Go Module
Ruby GEM
GitHub Repository
GitLab Repository
Maven Central
NPM Package
NuGet Package
Packagist Package
Python Package (PyPI)
VS Code Extension
WordPress Plugin
Search
/
Sign in
CVE-2022-4886
Published
October 25th, 2023
Wednesday, 25 October 2023, 20:15
View on NVD ↗
CVSS v3
8.8
HIGH
CVSS v2
N/A
Affected
1
PROJECT
Description
Ingress-nginx `path` sanitization can be bypassed with `log_format` directive.
Affected Projects
1
Configurations
1
References
4
kubernetes/ingress-nginx
Ingress NGINX Controller for Kubernetes
GitHub
19.5K