You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository was archived by the owner on Oct 3, 2025. It is now read-only.
the above security lists argocd version ranges as affected product, but not his project / go module.
Please consider updating this advisory to include:
0.7.1-0.20250129155113-7e21b91e9d0f as the fixed version
<= 0.7.1-0.20250124211812-d78929e7f6c7 as the affected versions
Because it is tripping up GO vulnerability scanners (Snyk and Twistlock) due to no advisories being published for the argocd 2.14 onwards; and the gitops-engine go module versions have no declared fixed version as above.
The module versions above were generated with go get on the commit that fixes the advisory and the one before it; and matches the module update version that got merged into argocd.