Описание
Argo CD Helm Chart before 10.0.0 fails to install network policies by default, allowing any pod on a cluster to access repo-server and other Argo APIs. Attackers can exploit this unrestricted network access through combined attacks to achieve cluster compromise and remote code execution.
EPSS
Процентиль: 20%
0.00284
Низкий
7.6 High
CVSS3
Дефекты
CWE-1188
Связанные уязвимости
CVSS3: 7.6
github
18 дней назад
Argo CD Helm Chart before 10.0.0 fails to install network policies by default, allowing any pod on a cluster to access repo-server and other Argo APIs. Attackers can exploit this unrestricted network access through combined attacks to achieve cluster compromise and remote code execution.
EPSS
Процентиль: 20%
0.00284
Низкий
7.6 High
CVSS3
Дефекты
CWE-1188