<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:o:amazon:freertos:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3oamazonfreertos/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 08 Oct 2026 19:20:51 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3oamazonfreertos/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Multiple Vulnerabilities in Argo CD</title><link>https://feed.craftedsignal.io/briefs/2026-10-argo-cd-vulnerabilities/</link><pubDate>Thu, 08 Oct 2026 19:20:51 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-10-argo-cd-vulnerabilities/</guid><description>Argo CD is affected by multiple vulnerabilities including CVE-2024-28113, CVE-2024-28114, CVE-2024-28115, and CVE-2024-28116, which allow for remote code execution, unauthorized information disclosure, and security control bypasses.</description><content:encoded><![CDATA[<p>Argo CD, a popular continuous delivery tool for Kubernetes, is impacted by a set of critical vulnerabilities identified as CVE-2024-28113, CVE-2024-28114, CVE-2024-28115, and CVE-2024-28116. These flaws collectively enable unauthenticated or authenticated remote attackers to achieve remote code execution, exfiltrate sensitive configuration data and credentials, bypass existing access control mechanisms, or perform denial of service attacks against the infrastructure.</p>
<p>Given that Argo CD frequently operates with administrative privileges within a Kubernetes cluster to manage deployments, successful exploitation of these vulnerabilities compromises the security posture of the entire target cluster. Security teams should prioritize patching affected instances to prevent attackers from hijacking continuous deployment workflows or extracting secrets stored within Argo CD configuration.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of these vulnerabilities allows for full compromise of the Argo CD instance. Attackers can gain code execution, access sensitive Kubernetes secrets or environment variables, and modify delivery pipelines to propagate malicious payloads to production environments. This impact is significant for organizations relying on GitOps workflows, as the integrity of the entire software supply chain is at risk.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize patching all internet-facing and internal Argo CD deployments to the latest secure version provided by the Argo Project. Verify that access to the Argo CD API and management interface is restricted to authorized administrative users only. Implement egress filtering for the Argo CD pod to prevent unauthorized connections to external C2 infrastructure in the event of partial compromise.</p>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>cloud</category><category>kubernetes</category></item></channel></rss>