CVE-2023-22482

CRITICAL9.0EPSS 0.40%

JWT audience claim is not verified in github.com/argoproj/argo-cd

Published: 1/25/2023Modified: 3/3/2026

Description

JWT audience claim is not verified in github.com/argoproj/argo-cd

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.0CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

References (3)