<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098</link><description /><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098</link><pubDate>Fri, 28 Mar 2025 14:09:37 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Current Revision posted to Appian Knowledge Base by Ryan Good on 3/28/2025 2:09:37 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Upon assessing the Appian platform against all details of the CVEs, we can confirm that the Appian platform is not impacted. Appian does deploy ingress-nginx in multiple partitions of the platform; however, these deployments do not make use of the admissionWebhooks component which is the underlying impacted feature. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;While our current implementation is not affected, we are prioritizing upgrades of our ingress-nginx deployments to the latest version as a precautionary safety measure. &lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IMPORTANT: &lt;/strong&gt;Self-managed Appian on Kubernetes is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 26, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/18</link><pubDate>Fri, 28 Mar 2025 14:06:34 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 18 posted to Appian Knowledge Base by Ryan Good on 3/28/2025 2:06:34 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Upon assessing the Appian platform against all details of the CVEs, we can confirm that the Appian platform is not impacted. Appian does deploy ingress-nginx in multiple partitions of the platform; however, these deployments do not make use of the admissionWebhooks component which is the underlying impacted feature. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;While our current implementation is not affected, we are prioritizing upgrades of our ingress-nginx deployments to the latest version as a precautionary safety measure. &lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IMPORTANT: &lt;/strong&gt;Self-managed Appian on Kubernetes is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 26, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: 24-March-2025&lt;/div&gt;
</description></item><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/17</link><pubDate>Fri, 28 Mar 2025 13:11:32 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 17 posted to Appian Knowledge Base by Ryan Good on 3/28/2025 1:11:32 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Upon assessing the Appian platform against all details of the CVEs, we can confirm that the Appian platform is not impacted. Appian does deploy ingress-nginx in multiple partitions of the platform; however, these deployments do not make use of the admissionWebhooks component which is the underlying impacted feature. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;While our current implementation is not affected, we are prioritizing upgrades of our ingress-nginx deployments to the latest version as a precautionary safety measure. &lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IMPORTANT: &lt;/strong&gt;Self-managed Appian on Kubernetes is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 26, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/16</link><pubDate>Fri, 28 Mar 2025 13:09:37 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 16 posted to Appian Knowledge Base by Ryan Good on 3/28/2025 1:09:37 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Upon assessing the Appian platform against all details of the CVEs, we can confirm that the Appian platform is not impacted. Appian does deploy ingress-nginx in multiple partitions of the platform; however, these deployments do not make use of the admissionWebhooks component which is the underlying impacted feature. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;While our current implementation is not affected, we are prioritizing upgrades of our ingress-nginx deployments to the latest version as a precautionary safety measure. &lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IMPORTANT: &lt;/strong&gt;Self-managed Appian on Kubernetes is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 26, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes&lt;/div&gt;
</description></item><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/15</link><pubDate>Wed, 26 Mar 2025 19:42:33 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 15 posted to Appian Knowledge Base by Ryan Good on 3/26/2025 7:42:33 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Upon assessing the Appian platform against all details of the CVEs, we can confirm that the Appian platform is not impacted. Appian does deploy ingress-nginx in multiple partitions of the platform; however, these deployments do not make use of the admissionWebhooks component which is the underlying impacted feature. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;While our current implementation is not affected, we are prioritizing upgrades of our ingress-nginx deployments to the latest version as a precautionary safety measure. &lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IMPORTANT: &lt;/strong&gt;Self-managed Appian on Kubernetes is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 26, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>KB-2335 Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/14</link><pubDate>Tue, 25 Mar 2025 18:11:49 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 14 posted to Appian Knowledge Base by Ryan Good on 3/25/2025 6:11:49 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;strong&gt;IMPORTANT:&amp;nbsp;&lt;/strong&gt;Self-managed Appian on Kubernetes&amp;nbsp;is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 25, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/13</link><pubDate>Tue, 25 Mar 2025 18:08:20 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 13 posted to Appian Knowledge Base by Ryan Good on 3/25/2025 6:08:20 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;strong&gt;IMPORTANT:&amp;nbsp;&lt;/strong&gt;Self-managed Appian on Kubernetes&amp;nbsp;is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Last reviewed: March 25, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller vulnerability (CVE-2025-1974, CVE-2025-24513, CVE-2025-24514, CVE-2025-1097,  &amp; CVE-2025-1098)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/12</link><pubDate>Tue, 25 Mar 2025 18:05:49 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Ryan Good</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 12 posted to Appian Knowledge Base by Ryan Good on 3/25/2025 6:05:49 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Supporting Documentation&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. Self-managed Appian on Kubernetes&amp;nbsp;is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/11</link><pubDate>Tue, 25 Mar 2025 17:52:00 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 11 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:52:00 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. Self-managed Appian on Kubernetes&amp;nbsp;is not shipped with ingress-nginx. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/10</link><pubDate>Tue, 25 Mar 2025 17:50:01 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 10 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:50:01 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. Self-managed Appian on Kubernetes does not include ingress-nginx by default and is unaffected by the vulnerability. If your environment uses the Ingress NGINX Controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/9</link><pubDate>Tue, 25 Mar 2025 17:47:46 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 9 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:47:46 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud. Self-managed Appian on Kubernetes does not include ingress-nginx by default and is unaffected by the vulnerability. If your environment uses the nginx ingress controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/8</link><pubDate>Tue, 25 Mar 2025 17:46:47 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 8 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:46:47 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Self-managed Appian on Kubernetes does not include ingress-nginx by default and is unaffected by the vulnerability. If your environment uses the nginx ingress controller to expose Appian, please review to confirm your version and upgrade to a secure one if necessary.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/7</link><pubDate>Tue, 25 Mar 2025 17:42:15 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Abdullah Munawar</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 7 posted to Appian Knowledge Base by Abdullah Munawar on 3/25/2025 5:42:15 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to Appian Cloud.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/6</link><pubDate>Tue, 25 Mar 2025 17:17:07 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 6 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:17:07 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: appian on kubernetes, appiancloud, Kubernetes, FAQ&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/5</link><pubDate>Tue, 25 Mar 2025 17:11:09 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 5 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:11:09 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced&lt;/a&gt;&amp;nbsp;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;http://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/4</link><pubDate>Tue, 25 Mar 2025 17:11:03 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 4 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:11:03 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt; &lt;a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;announced &lt;/a&gt;patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;http://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/3</link><pubDate>Tue, 25 Mar 2025 17:09:53 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 3 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:09:53 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt;&amp;nbsp;announced patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;http://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (Multiple CVEs)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/2</link><pubDate>Tue, 25 Mar 2025 17:05:49 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 2 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:05:49 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt;&amp;nbsp;announced patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;http://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item><item><title>[DRAFT SUPP-1064] Information about the Kubernetes ingress-nginx controller Vulnerability (CVE-2025-1974)</title><link>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098/revision/1</link><pubDate>Tue, 25 Mar 2025 17:05:25 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e9da4064-6970-4464-bc4f-ff09013dcdbc</guid><dc:creator>Harrison Hunt</dc:creator><comments>https://community.appian.com/support/w/kb/3641/kb-2335-information-about-the-kubernetes-ingress-nginx-controller-vulnerability-cve-2025-1974-cve-2025-24513-cve-2025-24514-cve-2025-1097-cve-2025-1098#comments</comments><description>Revision 1 posted to Appian Knowledge Base by Harrison Hunt on 3/25/2025 5:05:25 PM&lt;br /&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;On 24-Mar-2025, Wiz &lt;a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities"&gt;announced&lt;/a&gt; the discovery of a series of CVEs in the Ingress NGINX Controller for Kubernetes. These findings were reported to Kubernetes who later&lt;/span&gt;&lt;span&gt;&amp;nbsp;announced patches for ingress-nginx.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Appian is aware of this vulnerability and is actively investigating to determine whether or not we are impacted, please stay tuned for updates&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span&gt;Additional Notes&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="http://nvd.nist.gov/vuln/detail/CVE-2025-1974"&gt;http://nvd.nist.gov/vuln/detail/CVE-2025-1974&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24513"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24513&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-24514"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-24514&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1097"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1097&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;a id="" href="https://nvd.nist.gov/vuln/detail/CVE-2025-1098"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-1098&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Supporting Documentation&lt;/span&gt;&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a id="" href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/"&gt;https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item></channel></rss>