All unpatched versions of Argo CD starting with v1.0.0 are vulnerable to an improper access control bug, allowing a malicious user to potentially escalate their privileges to admin-level.
Metrics
Affected Vendors & Products
References
History
Wed, 07 Aug 2024 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Argoproj
Argoproj argo Cd |
|
CPEs | cpe:2.3:a:argoproj:argo_cd:*:*:*:*:*:*:*:* | |
Vendors & Products |
Linuxfoundation
Linuxfoundation argo-cd |
Argoproj
Argoproj argo Cd |
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2022-07-12T20:39:54
Updated: 2024-08-02T23:47:43.277Z
Reserved: 2022-03-18T00:00:00
Link: CVE-2022-1025
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-12T21:15:09.277
Modified: 2024-11-21T06:39:52.887
Link: CVE-2022-1025
Redhat