15 Total CVEs
15 AI Analyzed
0 CISA KEV
4 Critical

Profile

0% ended up actively exploited 0 of 15 added to CISA KEV
27% rated critical (CVSS 9.0+) 4 critical, 11 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

14 CVEs in the last 12 months

Products

  • Argo Workflows2
  • Secret data2
  • Argo Rollouts1
  • argo-helm1
  • argo-helm / Argo CD1

5 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-15 of 15 CVEs
CVE-2026-82277
Analyzed
9.8
argoproj Argo Rollouts

The Argo Rollouts dashboard exposes critical, unauthenticated mutating API operations, allowing unauthorized users to manipulate rollout processes acr...

2026-08-29
CVE-2026-62185
Analyzed
7.6
argoproj argo-helm

Argo CD Helm Chart before 10

2026-07-14
CVE-2026-54526
Analyzed
8.9
argoproj Argo Workflows

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2026-07-17
CVE-2026-43824
Analyzed
7.7
argoproj Secret data

In Argo CD 3

2026-05-02
CVE-2026-42880
Analyzed
9.6
argoproj Secret data

A missing authorization gap in Argo CD allows read-only users to extract plaintext Kubernetes Secret data via the ServerSideDiff endpoint.

2026-05-08
CVE-2026-42296
Analyzed
8.1
argoproj Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2026-05-09
CVE-2026-40886
Analyzed
7.7
argoproj Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2026-04-24
CVE-2026-28229
Analyzed
9.8
argoproj Argo Workflows

Argo Workflows template endpoints allow unauthenticated clients to leak sensitive WorkflowTemplates and Secret manifests by providing a malformed "Bea...

2026-03-12
CVE-2026-15416
Analyzed
8.9
argoproj argo-helm / Argo CD

A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated attacker with network access...

2026-07-15
CVE-2025-66626
Analyzed
8.1
argoproj Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2025-12-10
CVE-2025-62156
Analyzed
8.1
argoproj Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2025-10-14
CVE-2025-59538
Analyzed
7.5
argoproj Multiple Products

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes

2025-10-01
CVE-2025-59537
Analyzed
7.5
argoproj Multiple Products

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes

2025-10-01
CVE-2025-59531
Analyzed
7.5
argoproj Multiple Products

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes

2025-10-01
CVE-2025-55190
Analyzed
9.9
argoproj Multiple Products

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. In versions 2.13.0 through 2.13.8, 2.14.0 through 2.14.15, 3.0.0 through 3.0...

2025-09-05