A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the custom snippets feature to obtain all secrets in the cluster.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-25742.json"