Vulnerability GO-2026-5099
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
3 months ago
June 25, 2026 at 06:26 PM UTC
ArgoCD ServerSideDiff is vulnerable to Kubernetes Secret Extraction in github.com/argoproj/argo-cd
v0.1.0 - v1.8.7
v0.1.0 - v1.8.7
Summary
ArgoCD ServerSideDiff is vulnerable to Kubernetes Secret Extraction in github.com/argoproj/argo-cd
Details
ArgoCD ServerSideDiff is vulnerable to Kubernetes Secret Extraction in github.com/argoproj/argo-cd
References
Related Vulnerabilities
Other vulnerabilities affecting the same packages
High Risk
4 hours ago
Argo CD repo-server command injection via crafted SSH repository SOCKS5 proxy URL
v3.0.0 - v3.3.14 and v3.4.0 - v3.4.9 and v3.5.0 - v3.5.3 and v3.6.0-rc1 GHSA-j6cw-g6p4-7hch
v3.0.0 - v3.3.14 and v3.4.0 - v3.4.9 and v3.5.0 - v3.5.3 and v3.6.0-rc1 GHSA-j6cw-g6p4-7hch
High Risk
4 hours ago
Argo CD repo-server command injection via crafted SSH repository SOCKS5 proxy URL
v3.0.0 - v3.3.14 and v3.4.0 - v3.4.9 and v3.5.0 - v3.5.3 and v3.6.0-rc1 GHSA-j6cw-g6p4-7hch
v3.0.0 - v3.3.14 and v3.4.0 - v3.4.9 and v3.5.0 - v3.5.3 and v3.6.0-rc1 GHSA-j6cw-g6p4-7hch
Unknown
3 months ago
Argo CD: Kubernetes Secret Extraction via ArgoCD ServerSideDiff via sensitive annotations in github.com/argoproj/argo-cd
v3.2.0 - v3.2.11 GO-2026-5618
v3.2.0 - v3.2.11 GO-2026-5618
Unknown
3 months ago
Argo CD: Kubernetes Secret Extraction via ArgoCD ServerSideDiff via sensitive annotations in github.com/argoproj/argo-cd
v3.2.0 - v3.2.11 GO-2026-5618
v3.2.0 - v3.2.11 GO-2026-5618
Unknown
3 months ago
Argo CD: Kubernetes Secret Extraction via ArgoCD ServerSideDiff via sensitive annotations in github.com/argoproj/argo-cd
v3.2.0 - v3.2.11 GO-2026-5618
v3.2.0 - v3.2.11 GO-2026-5618
Impacted packages
Timeline
Published
3 months ago
June 25, 2026 at 06:26 PM UTC
Last Modified
3 months ago
July 08, 2026 at 08:11 AM UTC