Comments (1)
Hi! Analyzing security scanner output and remediating each reported vulnerability is beyond what the Argo CD team can provide.
We run our own Snyk scans weekly and target remediating any Critical or High severity vulnerabilities in the currently-supported release range.
If you would like to request that a certain dependency vulnerability be resolved, please report it as its own issue along with the severity according to Snyk and the affected Argo CD version(s) (if they are in the currently supported version range).
If Snyk evaluates the vulnerability to be less than High severity, and you would still like the vulnerability to be remediated, please provide an explanation of why the vulnerability poses a real (and not just theoretical) threat to users.
Finally, pull requests are appreciated and will likely be addressed more quickly than issues.
from argo-cd.
Related Issues (20)
- UI - Add Link From Application to its Parent ApplicationSet HOT 6
- Migrate the Grafana dashboard (Angular deprecation) HOT 2
- Add name and labels in cluster metrics HOT 4
- Feature request: UI: make repository connections page sortable
- arogcd cluster add command reports error HOT 3
- Resource deep links can't read metadata annotations from cluster HOT 1
- Cluster syncs hang (syncs never complete) HOT 7
- ARGOCD RBAC on Resource cluster Namespace for teams HOT 1
- If metrics are enabled, `argocd` commands return `FATA[0000] cannot find pod with selector: [app.kubernetes.io/name=argocd-repo-server-metrics]` when using --core HOT 2
- Bump issue #15184 - deprecate argocd-notifications docs site HOT 3
- Application controlled hangs and stop processing queue
- Application Set Controller with ClusterGenerator delete all Application if Cluster Temporally fails to list secret
- feat: support fish completion HOT 1
- Additional Application metrics.
- Support for GCP Workload Identity Federation (multi-cloud environment)
- Add proxy support to kustomize build operations HOT 1
- Inconsistent env var naming in RepoServer OTLP settings HOT 2
- Alternate color of resources in sync panel
- Define resource kind in syncWindow
- Sync can be "waiting for healthy state of /ConfigMap/<name>" for a while despite the config map can already be created HOT 12
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from argo-cd.