SecPod Community Forums Critical Vulnerability and Exploit Exchange CVE-2024-52799 : Argo Workflow Charts Vulnerability

  • This topic has 0 replies, 1 voice, and was last updated by Bhuvan Srikanta.
Viewing 0 reply threads
  • Author
    Posts
    • #6249
      Bhuvan Srikanta
      Participant

        Prior to Argo Workflows 0.44.0, the workflow-role granted excessive privileges, including pod/exec creation, enabling arbitrary code execution. This vulnerability was fixed in version 0.44.0, affecting Helm Chart users.

        CVSS SCORE: 8.3

    Viewing 0 reply threads
    • You must be logged in to reply to this topic.