You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I have tested with the :latest image tag (i.e. quay.io/argoproj/workflow-controller:latest) and can confirm the issue still exists on :latest. If not, I have explained why, in detail, in my description below.
I have searched existing issues and could not find a match for this bug
Hi,
Trivy scanner reports some vulnerabilites with CRITICAL and HIGH severity. Are they false positives, or is there a plan to mitigate them?
Thank you
Ivos
Pre-requisites
:latest
image tag (i.e.quay.io/argoproj/workflow-controller:latest
) and can confirm the issue still exists on:latest
. If not, I have explained why, in detail, in my description below.What happened? What did you expect to happen?
Hi,
Trivy scanner reports some vulnerabilites with CRITICAL and HIGH severity. Are they false positives, or is there a plan to mitigate them?
Thank you
Ivos
argoproj/workflow-controller
CRITICAL https://avd.aquasec.com/nvd/cve-2024-45337
HIGH https://avd.aquasec.com/nvd/cve-2024-45338
argoproj/argocli
CRITICAL https://avd.aquasec.com/nvd/cve-2024-45337
CRITICAL https://avd.aquasec.com/nvd/cve-2025-21613
HIGH https://avd.aquasec.com/nvd/cve-2024-45338
HIGH https://avd.aquasec.com/nvd/cve-2025-21614
Version(s)
v3.6.2
Paste a minimal workflow that reproduces the issue. We must be able to run the workflow; don't enter a workflow that uses private images.
none
Logs from the workflow controller
Logs from in your workflow's wait container
The text was updated successfully, but these errors were encountered: