Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
As of v1.5.0, the Argo API does not implement anti-automation measures such as rate limiting, account lockouts, or other anti-bruteforce measures. Attackers can submit an unlimited number of authentication attempts without consequence.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Argo 授权问题漏洞
Vulnerability Description
Argo是一款开源的容器本机工作流引擎。 Argo v1.5.0之前版本中存在授权问题漏洞,该漏洞源于程序未实施反自动化保护。远程攻击者可利用该漏洞暴力破解管理员密码。
CVSS Information
N/A
Vulnerability Type
N/A