argocd-image-updater-fips
Chainguard
Status
Justification
Impact
This vulnerability affects versions <= v1.29.12. This vulnerability is limited to Windows hosts.
Status
Impact
Upstream able to bump to k8s deps to v0.30.x on master branch already, but v0.15.2 tag uses v0.26.x versions and makes impossible to bump k8s dependency to v1.31.5. Next release will hopefully mitigate the CVE.
Status