<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 09:21:54 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-06327</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-06327</link>
      <description>bdu:2025-06327</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-06327</guid>
    </item>
    <item>
      <title>EUVD-2026-241986</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-241986</link>
      <description>EUVD-2026-241986</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-241986</guid>
    </item>
    <item>
      <title>fkie_cve-2025-47933</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-47933</link>
      <description>&lt;p&gt;Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.13.8, 2.14.13, and 3.0.4, an attacker can perform arbitrary actions on behalf of the victim via the API. Due to the improper filtering of URL protocols in the repository page, an attacker can achieve cross-site scripting with permission to edit the repository. This issue has been patched in versions 2.13.8, 2.14.13, and 3.0.4.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.13.8, 2.14.13, and 3.0.4, an attacker can perform arbitrary actions on behalf of the victim via the API. Due to the improper filtering of URL protocols in the repository page, an attacker can achieve cross-site scripting with permission to edit the repository. This issue has been patched in versions 2.13.8, 2.14.13, and 3.0.4.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-47933</guid>
    </item>
    <item>
      <title>GHSA-2hj5-g64g-fp6p — Argo CD allows cross-site scripting on repositories page</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2hj5-g64g-fp6p</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/argoproj/argo-cd, Go: github.com/argoproj/argo-cd/v2, Go: github.com/argoproj/argo-cd/v3&lt;/p&gt;
&lt;p&gt;### Impact
This vulnerability allows an attacker to perform arbitrary actions on behalf of the victim via the API, such as creating, modifying, and deleting Kubernetes resources. Due to the improper filtering of URL protocols in the repository page, an attacker can achieve cross-site scripting with permission to edit the repository.&lt;/p&gt;
&lt;p&gt;In `ui/src/app/shared/components/urls.ts`, the following code exists to parse the repository URL.&lt;/p&gt;
&lt;p&gt;https://github.com/argoproj/argo-cd/blob/0ae5882d5ae9fe88efc51f65ca8543fb8c3a0aa1/ui/src/app/shared/components/urls.ts#L14-L26&lt;/p&gt;
&lt;p&gt;Since this code doesn&amp;#39;t validate the protocol of repository URLs, it&amp;#39;s possible to inject `javascript:` URLs here.&lt;/p&gt;
&lt;p&gt;https://github.com/argoproj/argo-cd/blob/0ae5882d5ae9fe88efc51f65ca8543fb8c3a0aa1/ui/src/app/shared/components/repo.tsx#L5-L7&lt;/p&gt;
&lt;p&gt;As the return value of this function is used in the `href` attribute of the `a` tag, it&amp;#39;s possible to achieve cross-site scripting by using `javascript:` URLs.&lt;/p&gt;
&lt;p&gt;Browsers may return the proper hostname for `javascript:` URLs, allowing exploitation of this vulnerability.&lt;/p&gt;
&lt;p&gt;### Patches
A patch for this vulnerability has been released in the following Argo CD versions:
- v3.0.4
- v2.14.13
- v2.13.8&lt;/p&gt;
&lt;p&gt;The patch incorporates a way to validate the URL being passed in. Returning `null` if the validation fails.&lt;/p&gt;
&lt;p&gt;### Workarounds
There are no workarounds other than depending on the browser to filter the URL.&lt;/p&gt;
&lt;p&gt;### Credits
Disclosed by @Ry0taK [RyotaK](https://ryotak.net).&lt;/p&gt;
&lt;p&gt;### For more informati…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/argoproj/argo-cd, Go: github.com/argoproj/argo-cd/v2, Go: github.com/argoproj/argo-cd/v3&lt;/p&gt;
&lt;p&gt;### Impact
This vulnerability allows an attacker to perform arbitrary actions on behalf of the victim via the API, such as creating, modifying, and deleting Kubernetes resources. Due to the improper filtering of URL protocols in the repository page, an attacker can achieve cross-site scripting with permission to edit the repository.&lt;/p&gt;
&lt;p&gt;In `ui/src/app/shared/components/urls.ts`, the following code exists to parse the repository URL.&lt;/p&gt;
&lt;p&gt;https://github.com/argoproj/argo-cd/blob/0ae5882d5ae9fe88efc51f65ca8543fb8c3a0aa1/ui/src/app/shared/components/urls.ts#L14-L26&lt;/p&gt;
&lt;p&gt;Since this code doesn&amp;#39;t validate the protocol of repository URLs, it&amp;#39;s possible to inject `javascript:` URLs here.&lt;/p&gt;
&lt;p&gt;https://github.com/argoproj/argo-cd/blob/0ae5882d5ae9fe88efc51f65ca8543fb8c3a0aa1/ui/src/app/shared/components/repo.tsx#L5-L7&lt;/p&gt;
&lt;p&gt;As the return value of this function is used in the `href` attribute of the `a` tag, it&amp;#39;s possible to achieve cross-site scripting by using `javascript:` URLs.&lt;/p&gt;
&lt;p&gt;Browsers may return the proper hostname for `javascript:` URLs, allowing exploitation of this vulnerability.&lt;/p&gt;
&lt;p&gt;### Patches
A patch for this vulnerability has been released in the following Argo CD versions:
- v3.0.4
- v2.14.13
- v2.13.8&lt;/p&gt;
&lt;p&gt;The patch incorporates a way to validate the URL being passed in. Returning `null` if the validation fails.&lt;/p&gt;
&lt;p&gt;### Workarounds
There are no workarounds other than depending on the browser to filter the URL.&lt;/p&gt;
&lt;p&gt;### Credits
Disclosed by @Ry0taK [RyotaK](https://ryotak.net).&lt;/p&gt;
&lt;p&gt;### For more informati…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2hj5-g64g-fp6p</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15188-1 — govulncheck-vulndb-0.0.20250529T205903-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15188-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250529T205903-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250529T205903-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15188-1</guid>
    </item>
    <item>
      <title>RHSA-2025:8269 — Red Hat Security Advisory: Red Hat OpenShift GitOps 1.16.1 security release</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:8269</link>
      <description>&lt;p&gt;argocd: Improper URL Sanitization in Argo CD Repository Page Allows Cross-Site Scripting (XSS)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;argocd: Improper URL Sanitization in Argo CD Repository Page Allows Cross-Site Scripting (XSS)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:8269</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1164 — Red Hat OpenShift GitOps: Schwachstelle ermöglicht Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1164</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenShift GitOps ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenShift GitOps ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1164</guid>
    </item>
  </channel>
</rss>
