[Report] Mitigation complete for ingress-nginx vulnerabilities
Four vulnerabilities, including high-severity issues, were reported in ingress-nginx, the open-source software used for workload publishing. PFCP has completed mitigation by upgrading Kubernetes clusters to a fixed version.
Mitigation Details:
ingress-nginx version upgrade (v1.14.3)
Mitigation Completion Date:
2026/02/04
User Impact:
No action is required on the user side. You can continue using the service as usual.
Vulnerability Details:
- CVE-2026-1580: https://github.com/kubernetes/kubernetes/issues/136677
- CVE-2026-24512: https://github.com/kubernetes/kubernetes/issues/136678
- CVE-2026-24513: https://github.com/kubernetes/kubernetes/issues/136679
- CVE-2026-24514: https://github.com/kubernetes/kubernetes/issues/136680
PFCP will continue to provide timely security updates so users can use our services with confidence.
