zapier / kubechecks

Check your Kubernetes changes before they hit the cluster
https://kubechecks.readthedocs.io/en/latest/
Mozilla Public License 2.0
136 stars 6 forks source link

CVE-2024-31989 #221

Closed adampie closed 1 month ago

adampie commented 1 month ago

Dependency github.com/argoproj/argo-cd/v2 is vulnerable to CVE-2024-31989, which exists in versions >= 2.10.0-rc1, < 2.10.10

Source ~ go.mod Component name ~ github.com/argoproj/argo-cd/v2 Vulnerable version ~ 2.10.6 Fixed version ~ 2.10.10