Argo CD - v2.7.12

Security

Quick Start

Non-HA:

kubectl create namespace argocd
kubectl apply -n argocd -f https://raw.githubusercontent.com/argoproj/argo-cd/v2.7.12/manifests/install.yaml

HA:

kubectl create namespace argocd
kubectl apply -n argocd -f https://raw.githubusercontent.com/argoproj/argo-cd/v2.7.12/manifests/ha/install.yaml

Release Signatures and Provenance

All Argo CD container images are signed by cosign. A Provenance is generated for container images and CLI binaries which meet the SLSA Level 3 specifications. See the documentation on how to verify.

Upgrading

If upgrading from a different minor version, be sure to read the upgrading documentation.

Security (1)

  • MODERATE: Web terminal session doesn't expire (https://github.com/argoproj/argo-cd/security/advisories/GHSA-c8xw-vjgf-94hr)

Changelog

Bug fixes

  • fcdaf9b4b6bf040c0fbf746c0798cbb9f36a4956: fix(ui): COPY JSON for ArgoCD version should include trailing newline (#5117) (#14917) (#14939) (@gcp-cherry-pick-bot[bot])
  • 2d483a4c2f6c50a2bddf02667062aca9497abe58: fix(cmp): send sigterm to cmp commands before sigkill to allow for potential cleanup (#9180) (#14955) (#14959) (@gcp-cherry-pick-bot[bot])
  • 2333b048f9465bcf0c5067be8d6f2aaa2a0478a9: fix(ui): code lint (#15150) (#15161) (@gcp-cherry-pick-bot[bot])
  • 849b5a6344017e39e18c9f8e4deeb524f5f3fc16: fix: bump ubuntu base image (#15020) (#15021) (#15024) (@gcp-cherry-pick-bot[bot])
  • 685040cf82178b1e5732bf2b839312ff0f9d6ef2: fix: upgrade slsa-github-generator (#15173) (@34fathombelow)
  • 7a353a55c814885004f99a47b58e2eff0d062be4: fix: windows build (#15154) (#15157) (@gcp-cherry-pick-bot[bot])

Documentation

  • 990ab0ef81d7bdedaf7d4a9b210a38f3af8eb2f5: docs: Update Generators-Git.md (#14921) (#14935) (@gcp-cherry-pick-bot[bot])
  • 693ea664ff47b6f5ad89320aa51cc74a5ceedabd: docs: add docs for various annotations and labels (#14020) (#15113) (@gcp-cherry-pick-bot[bot])
  • af202bc7efd3fa267ae28a03dfc322f0ba7b2b7c: docs: document permitOnlyProjectScopedClusters field (#15076) (#15081) (@gcp-cherry-pick-bot[bot])
  • 6e6d6e01e24f496326e1e2105df508aa3a5abeb0: docs: fix typo (#15083) (#15089) (@gcp-cherry-pick-bot[bot])
  • 2ff6e5178e98b499a2245dcf2ab45ca73744a7d3: docs: kubectl to synchronize argocd apps (#14881) (#15086) (@gcp-cherry-pick-bot[bot])
  • 580966ce85206920312b9b7ad2de6827894be777: docs: ✏️ fix typo on configmap name for private certs (#9596) (#15132) (@gcp-cherry-pick-bot[bot])

Other work

  • 003d6d1da5e02ef475eaa3d89b84f9ff2dac8000: Merge pull request from GHSA-c8xw-vjgf-94hr (@pasha-codefresh)
  • 7e3572f373fd136d20f751bbc59143981a31c7e8: docs(progressive syncs): specify which ConfigMap to use (#15119) (#15134) (@gcp-cherry-pick-bot[bot])

Full Changelog: https://github.com/argoproj/argo-cd/compare/v2.7.11...v2.7.12


Security

Security wording was detected, but no CVEs were found.

Details

date
Aug. 23, 2023, 3:02 p.m.
name
v2.7.12
type
Patch
👇
Register or login to:
  • 🔍View and search all Argo CD releases.
  • 🛠️Create and share lists to track your tools.
  • 🚨Setup notifications for major, security, feature or patch updates.
  • 🚀Much more coming soon!
Continue with GitHub
Continue with Google
or