Unrated severityNVD Advisory· Published Apr 8, 2020· Updated Aug 4, 2024
CVE-2020-8826
CVE-2020-8826
Description
As of v1.5.0, the Argo web interface authentication system issued immutable tokens. Authentication tokens, once issued, were usable forever without expiration—there was no refresh or forced re-authentication.
Affected products
2- Argo/Argo web interfacedescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- argoproj.github.io/argo-cd/security_considerations/mitrex_refsource_MISC
- www.soluble.ai/blog/argo-cves-2020mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.