This article delves into Kubernetes ingress nginx controller vulnerabilities, mainly CVE-2023-5044's exploitation using annotations, Lua and command injection, highlighting its (low) risk due to role-based permissions.
More: https://raesene.github.io/blog/2023/10/29/exploiting-CVE-2023-5044
Post #807
417