REDHAT-BUG-2464613: High severity Argo Argo CD vulnerability
Published May 2, 2026
·Updated
In Argo CD 3.2.0 before 3.2.11 and 3.3.0 before 3.3.9, ServerSideDiff allows reading cleartext Kubernetes Secret data.
Affected Software
1 affected component
Argo Argo CD>=3.2.0<3.2.11, >=3.3.0<3.3.9
Event History
May 2, 2026
Data Sourced
via Red Hat·02:01 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2464613?
The severity of REDHAT-BUG-2464613 is high with a score of 7.
2
How do I fix REDHAT-BUG-2464613?
To fix REDHAT-BUG-2464613, upgrade Argo CD to version 3.2.11 or 3.3.9 or later.
3
What does REDHAT-BUG-2464613 affect?
REDHAT-BUG-2464613 affects Argo CD versions prior to 3.2.11 and 3.3.9.
4
What is the impact of REDHAT-BUG-2464613?
The impact of REDHAT-BUG-2464613 allows the reading of cleartext Kubernetes Secret data.
5
When was REDHAT-BUG-2464613 published?
REDHAT-BUG-2464613 was published on May 2, 2026.