Please could someone clarify if Ingress-nginx CVE-...
# harvester
b
Please could someone clarify if Ingress-nginx CVE-2025-1974 and the mitigation in https://www.suse.com/support/kb/doc/?id=000021756 should be applied to the rke2 deployed as part of harvester?
b
I think it's in the article you posted: `
Copy code
kubectl get pods --all-namespaces --selector <http://app.kubernetes.io/name=ingress-nginx|app.kubernetes.io/name=ingress-nginx>
If you have pods, you're affected.
I'm pretty sure it doesn't use nginx by default though
I think it's the k3s clusters that do
t
I think you are going to have to wait until they upgrade harvester. this is due to how harvester boots.
b
Maybe I'm wrong. ¯\_(ツ)_/¯
t
lol
b