← Back to CVE List

CVE-2020-11576

Published: 2020-04-08T18:15Z
Last Modified: 2024-11-21T04:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Fixed in v1.5.1, Argo version v1.5.0 was vulnerable to a user-enumeration vulnerability which allowed attackers to determine the usernames of valid (non-SSO) accounts because /api/v1/session returned 401 for an existing username and 404 otherwise. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt