Filter
-Infinity
0

go/github.com/argoproj/argo-cd/v2The Argo CD web terminal session does not handle the revocation of user permissions properly.

First published (updated )

go/github.com/argoproj/argo-cd/v2Argo CD Unauthenticated Denial of Service (DoS) Vulnerability via /api/webhook Endpoint

7.5
First published (updated )

go/github.com/argoproj/argo-cd/v2/serverUnauthenticated Access to sensitive settings in Argo CD

7.5
First published (updated )

go/github.com/argoproj/argo-cdArgo CD allows authenticated users to enumerate clusters by name

First published (updated )

go/github.com/argoproj/argo-cd/v2ArgoCD Vulnerable to Use of Risky or Missing Cryptographic Algorithms in Redis Cache

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

go/github.com/argoproj/argo-cd/v2Denial of Service via malicious jqPathExpressions in ignoreDifferences

EPSS
0.04%
First published (updated )

go/github.com/argoproj/argo-cd/v2Argo CD' API server does not enforce project sourceNamespaces

EPSS
0.04%
First published (updated )

go/github.com/argoproj/argo-cd/v2Uncontrolled Resource Consumption vulnerability in ArgoCD's repo server

EPSS
0.04%
First published (updated )

go/github.com/argoproj/argo-cd/v2Argo CD vulnerable to Bypassing of Rate Limit and Brute Force Protection Using Cache Overflow

First published (updated )

go/github.com/argoproj/argo-cd/v2Argo CD Denial of Service (DoS) Vulnerability Due to Unsafe Array Modification in Multi-threaded Environment

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

redhat/argo-cdArgo CD vulnerable to Bypassing of Brute Force Protection via Application Crash and In-Memory Data Loss

First published (updated )

go/github.com/argoproj/argo-cd/v2Cross-site scripting on application summary component in argo-cd

EPSS
0.04%
First published (updated )

Argo CDCSRF

First published (updated )

go/github.com/argoproj/argo-cd/v2Cross-Site Request Forgery (CSRF) in github.com/argoproj/argo-cd

8.4
EPSS
0.05%
First published (updated )

go/github.com/argoproj/argo-cd/v2Path traversal allows leaking out-of-bound Helm charts from Argo CD repo-server

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Argo CDDenial of Service to Argo CD repo-server

First published (updated )

go/github.com/argoproj/argo-cdArgo CD web terminal session doesn't expire

7.1
First published (updated )

Argo CDCluster secret might leak in cluster details page in Argo CD

First published (updated )

Argo CDArgo CD leaks repository credentials in user-facing error messages and in logs

First published (updated )

Argo CDAll Argo CD versions starting with v2.3.0-rc1 are vulnerable to an improper authorization bug which …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Argo CDArgo CD users with any cluster secret update access may update out-of-bounds cluster secrets

First published (updated )

Argo CDargo-cd Controller reconciles apps outside configured namespaces when sharding is enabled

8.6
First published (updated )

Argo CDJWT audience claim is not verified

First published (updated )

Argo CDCross-site Scripting for Argo CD single sign on users

First published (updated )

Linux Foundation Argo CDArgo CD's certificate verification is skipped for connections to OIDC providers

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Argo CDAll unpatched versions of Argo CD starting with v1.0.0 are vulnerable to an improper access control …

First published (updated )

Argo CDSymlink following allows leaking out-of-bounds YAML files from Argo CD repo-server

First published (updated )

go/github.com/argoproj/argo-cd/v2Argo CD vulnerable to Uncontrolled Memory Consumption

First published (updated )

go/github.com/argoproj/argo-cd/v2External URLs for Deployments can include javascript in argo-cd

First published (updated )

go/github.com/argoproj/argo-cd/v2Insecure entropy in argo-cd

8.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203