CVE-2021-23055

    Dashboard / Vulnerabilities / CVE-2021-23055

    CVE-2021-23055

    Published: 21 Apr 2022Last Modified: 9 Jul 2026

    Summary:

    Details: On version 2.x before 2.0.3 and 1.x before 1.12.3, the command line restriction that controls snippet use with NGINX Ingress Controller does not apply to Ingress objects. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 90b8f75bd7ec7a40e5988e16d70cd4648b6edabb

    Affected versions

    v1.12.2
    v1.12.1
    v1.12.0

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2021-23055 | CVE-DB