Authentication Token Vulnerability in Argo Web Interface by Argo Project
CVE-2020-8826
7.5HIGH
What is CVE-2020-8826?
The Argo Web Interface's authentication system introduced a vulnerability with the issuance of immutable tokens starting from version 1.5.0. These tokens remain valid indefinitely once assigned, allowing unauthorized access if compromised. The lack of expiration or forced re-authentication poses a significant risk as malicious actors could exploit this flaw to maintain persistent access to sensitive interfaces without detection.