# Ingress-nginx CVE-2025-1974: What It Is and How to Fix It

DevFeed: [Ingress-nginx CVE-2025-1974: What It Is and How to Fix It](<https://devfeed.tech/articles/ingress-nginx-cve-2025-1974-what-it-is-and-how-to-fix-it-29.md>)

Original publisher: [Read original article](<https://blog.abhimanyu-saharan.com/posts/ingress-nginx-cve-2025-1974-what-it-is-and-how-to-fix-it>)

Author: Abhimanyu Saharan

Published: 2025-03-25T00:00:00Z

Content type: article

Language: en

Sources: [Abhimanyu Saharan](<https://devfeed.tech/sources/abhimanyu-s-blog.md>)

Topics: [nginx](<https://devfeed.tech/topics/nginx.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [cve](<https://devfeed.tech/tags/cve.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [ingress-nginx](<https://devfeed.tech/tags/ingress-nginx.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [rce](<https://devfeed.tech/tags/rce.md>), [security](<https://devfeed.tech/tags/security.md>)

## AI overview

The article explains CVE-2025-1974, known as IngressNightmare, a critical remote code execution vulnerability in ingress-nginx that affects more than 40% of clusters. It covers how to detect and patch the flaw.

## Source excerpt

CVE-2025-1974 (IngressNightmare) is a critical RCE flaw in ingress-nginx affecting 40%+ of clusters. Learn how to detect and patch it.