Traefik 版本 v3.7.0 至 v3.7.10 中的 Kubernetes Ingress NGINX 提供者存在一个认证绕过漏洞。 当 Ingress 资源带有 注解时,系统生成的 TLS 选项名称是基于该 Ingress 的命名空间(namespace)和名称(name)。因此,如果两个 Ingress 对象共享相同的主机名、相同的客户端 CA 密钥以及相同的客户端认证模式,它们会为同一主机生成两个不同的 TLS 选项名称。 Traefik 将此情况视为 TLS 选项冲突,并回退到入口点(entry p
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-85595 | 9.3 CRITICAL | Traefik before v2.11.55 Authentication Bypass via digestAuth |
| CVE-2026-85597 | 8.2 HIGH | Traefik before v2.11.55 mTLS Bypass via TLS Option Conflict |
| CVE-2026-85594 | 7.0 HIGH | Traefik v3.7.1 crossProviderNamespaces Bypass via Service Middleware |
No comments yet