CVE-2024-13484

A flaw was found in openshift-gitops-operator-container. The openshift.io/cluster-monitoring label is applied to all namespaces that deploy an ArgoCD CR instance, allowing the namespace to create a rogue PrometheusRule. This issue can have adverse effects on the platform monitoring stack, as the rule is rolled out cluster-wide when the label is applied.
Configurations

No configuration.

History

No history.

Information

Published : 2025-01-28 18:15

Updated : 2025-06-24 07:15


NVD link : CVE-2024-13484

Mitre link : CVE-2024-13484

CVE.ORG link : CVE-2024-13484


JSON object : View

Products Affected

No product.

CWE
CWE-668

Exposure of Resource to Wrong Sphere