Argo CD Vulnerability Shows Why GitOps Infrastructure Must Be Treated as Tier Zero
A newly disclosed flaw in Argo CD's repo-server lets attackers manipulate Kubernetes deployments through the GenerateManifest gRPC endpoint. Here's what happened, how the exploit works, and how to lock down your GitOps pipeline.