{"id":"GO-2022-0892","summary":"Improper Restriction of Excessive Authentication Attempts in Argo API in github.com/argoproj/argo-cd","details":"Improper Restriction of Excessive Authentication Attempts in Argo API in github.com/argoproj/argo-cd","aliases":["BIT-argo-cd-2020-8827","CVE-2020-8827","GHSA-xcqr-9h24-vrgw"],"modified":"2026-03-17T04:28:56.516487Z","published":"2024-08-21T15:29:08Z","database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2022-0892"},"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-xcqr-9h24-vrgw"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2020-8827"},{"type":"FIX","url":"https://github.com/argoproj/argo-cd/commit/35a7350b7444bcaf53ee0bb11b9d8e3ae4b717a1"},{"type":"FIX","url":"https://github.com/argoproj/argo-cd/pull/3369"},{"type":"FIX","url":"https://github.com/argoproj/argo-cd/pull/3404"},{"type":"WEB","url":"https://github.com/argoproj/argo/releases"}],"affected":[{"package":{"name":"github.com/argoproj/argo-cd","ecosystem":"Go","purl":"pkg:golang/github.com/argoproj/argo-cd"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.5.1"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2022-0892.json"}}],"schema_version":"1.7.5"}