Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-23347

The package github.com/argoproj/argo-cd/cmd before 1.7.13, from 1.8.0 and before 1.8.6 are vulnerable to Cross-site Scripting (XSS) the SSO provider connected to Argo CD would have to send back a malicious error message containing JavaScript to the user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 54.6%
CVSS Severity
CVSS v3 Score 4.7
CVSS v2 Score 3.5
Products affected by CVE-2021-23347


Contact Us

Shodan ® - All rights reserved