Security Advisory

CVE-2024-13484

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-28 17:54:28
Last updated 2026-02-25 18:24:30
Assigner redhat
State PUBLISHED

Description

A flaw was found in openshift-gitops-operator-container. The openshift.io/cluster-monitoring label is applied to all namespaces that deploy an ArgoCD CR instance, allowing the namespace to create a rogue PrometheusRule. This issue can have adverse effects on the platform monitoring stack, as the rule is rolled out cluster-wide when the label is applied.