privilegedescalation-engineer[bot] 730f7cbe54 fix: override lodash >=4.18.0 to patch code injection vulnerability (#7)
* fix: override lodash >=4.18.0 to patch code injection vulnerability

GHSA-r5fr-rjxr-66jc is a code injection vulnerability in lodash
below 4.18.0. The vulnerable transitive dependency comes through
@kinvolk/headlamp-plugin.

Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>

* Regenerate lockfile for lodash override

Co-Authored-By: Paperclip <noreply@paperclip.ing>

---------

Co-authored-by: Gandalf the Greybeard <gandalf@privilegedescalation.dev>
Co-authored-by: Claude Opus 4.7 <noreply@anthropic.com>
Co-authored-by: Chris Farhood <chris@farhood.org>
Co-authored-by: Paperclip <noreply@paperclip.ing>
2026-05-04 03:24:00 +00:00
2026-04-21 20:04:40 +00:00

headlamp-argocd

A Headlamp plugin for ArgoCD visibility.

Monitors ArgoCD Applications, Rollouts, and health status. Read-only — no cluster write operations.

Installation

Install via Headlamp's built-in plugin installer (ArtifactHub):

# Install from Headlamp UI → Settings → Plugins → Add plugin
# Search for "argocd" or paste the ArtifactHub URL

Development

npm install
npm run build
npm test

Release

Releases are automated via the GitHub Actions release workflow:

gh workflow run Release --field version=0.1.0

License

Apache-2.0

S
Description
Headlamp plugin for ArgoCD visibility — monitors ArgoCD Applications, Rollouts, and health status
Readme MIT 832 KiB
v0.1.3 Latest
2026-05-05 18:43:41 +00:00
Languages
TypeScript 100%