Unpatched Argo CD Repo-Server Flaw Enables Full Kubernetes Cluster Takeover
An unpatched vulnerability in the Argo CD repo-server component allows unauthenticated attackers to execute arbitrary code and potentially take over Kubernetes clusters.…
An unpatched vulnerability in the Argo CD repo-server component allows unauthenticated attackers to execute arbitrary code and potentially take over Kubernetes clusters.…
A vulnerability in Argo CD where the Redis cache lacked authentication, allowing any pod in the cluster to poison deployment data. Fixed…
A flaw in Argo CD where an API token with basic read access could retrieve Git repository credentials from a project. Patched…
A vulnerability in Argo CD allowing read-only users to read plaintext Kubernetes secrets. Patched in May 2026.
A cybersecurity research firm that discovered the unpatched Argo CD repo-server flaw. They reported it in January 2025 and published details after…
A company that discovered CVE-2024-31989, an Argo CD Redis cache poisoning vulnerability. They focus on application security and code integrity.
A popular GitOps tool for deploying applications to Kubernetes clusters. It uses a repo-server component to read Git repositories and generate Kubernetes…