All unpatched versions of Argo CD starting with v1.0.0 are vulnerable to an improper access control bug, allowing a malicious user to potentially escalate their privileges to admin-level.
Metrics
Affected Vendors & Products
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 07 Aug 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Argoproj
Argoproj argo Cd |
|
| CPEs | cpe:2.3:a:argoproj:argo_cd:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Linuxfoundation
Linuxfoundation argo-cd |
Argoproj
Argoproj argo Cd |
Status: PUBLISHED
Assigner: redhat
Published: 2022-07-12T20:39:54
Updated: 2024-08-02T23:47:43.277Z
Reserved: 2022-03-18T00:00:00
Link: CVE-2022-1025
No data.
Status : Modified
Published: 2022-07-12T21:15:09.277
Modified: 2024-11-21T06:39:52.887
Link: CVE-2022-1025