In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Cryptographic Issues vulnerabilities in an interactive lesson.
Start learningUpgrade github.com/argoproj/argo-workflows/v3/cmd/argo/commands to version 3.1.7, 3.0.9 or higher.
github.com/argoproj/argo-workflows/v3/cmd/argo/commands is a workflow engine for Kubernetes.
Affected versions of this package are vulnerable to Cryptographic Issues. Argo Server TLS requests could be forged by an attacker with network access. We are not aware of any exploits. This is a pro-active fix.
You are impacted if:
v3.0 with --secure=true or greater than or equal to v3.0 with --secure unspecified (note - running in secure mode is recommended regardless).