Overview

FieldValue
ID1092
NameManage IngressClasses (Cluster-wide Traffic Control Tampering)
Risk CategoryNetworkManipulation
Risk LevelCritical
Role TypeClusterRole
API Groupsnetworking.k8s.io
Resourcesingressclasses
Verbscreate, update, patch, delete
TagsClusterAdminAccess DenialOfService NetworkManipulation ServiceExposure Tampering

Description

Allows creating, updating, or deleting IngressClasses cluster-wide. IngressClasses define types of ingress controllers. Modifying them can affect how all ingresses in the cluster behave, potentially redirecting traffic globally, disabling ingress controllers, or leading to widespread service exposure or denial of service.