CVE-2023-5044: Kubernetes Ingress-Nginx

High severity, CVSS 8.8. EPSS: 56.6% chance of exploitation in the next 30 days.

Code injection via nginx.ingress.kubernetes.io/permanent-redirect annotation.

Affected products

  • Kubernetes Ingress-Nginx: before 1.9.0 (fixed in 1.9.0)

Published 2023-10-25. Last modified 2026-06-17.