RHSA-2025:8277: Important: Errata Advisory for Red Hat OpenShift GitOps v1.15.3 security update
Errata Advisory for Red Hat OpenShift GitOps 1.15.3 security release.Security Fix(es): openshift-gitops-argocd-container: Improper URL Sanitization in Argo CD Repository Page Allows Cross-Site Scripting (XSS) gitops-1.15 openshift-gitops-1/argocd-rhel9: Improper URL Sanitization in Argo CD Repository Page Allows Cross-Site Scripting (XSS) gitops-1.15 openshift-gitops-1/gitops-operator-bundle: Improper URL Sanitization in Argo CD Repository Page Allows Cross-Site Scripting (XSS) gitops-1.15
Other sources
Important: Errata Advisory for Red Hat OpenShift GitOps v1.15.3 security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:8277?
The severity of RHSA-2025:8277 is classified as important due to vulnerabilities in the Argo CD Repository Page.
How do I fix RHSA-2025:8277?
To fix RHSA-2025:8277, update to the latest version of Red Hat OpenShift GitOps as specified in the advisory.
What vulnerabilities are addressed in RHSA-2025:8277?
RHSA-2025:8277 addresses an improper URL sanitization vulnerability in the Argo CD Repository Page allowing cross-site scripting (XSS).
Which products are affected by RHSA-2025:8277?
RHSA-2025:8277 affects multiple products including Red Hat OpenShift GitOps for ARM 64, IBM Z and LinuxONE, and IBM Power.
What is CVE-2025-47933 in relation to RHSA-2025:8277?
CVE-2025-47933 is the identifier for the specific vulnerability regarding improper URL sanitization in Argo CD that is addressed in RHSA-2025:8277.