REDHAT-BUG-2468446: High severity Argo Argo Workflows vulnerability

Published May 9, 2026
·
Updated

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to versions 3.7.14 and 4.0.5, a user with create Workflow permission can bypass templateReferencing: Strict to get host network access, switch service accounts, override pod security context, add tolerations to schedule on control-plane nodes, or enable SA token mounting. This defeats the stated purpose of the feature. The practical impact depends on what Kubernetes-level controls are in place. Clusters with PodSecurity admission or OPA/Gatekeeper would independently block some of these (like hostNetwork). Clusters that rely on Argo's Strict mode as the primary enforcement layer are fully exposed. This issue has been patched in versions 3.7.14 and 4.0.5.

Affected Software

1 affected component
Argo Argo Workflows<3.7.14, <4.0.5

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Argo Workflows to a version that resolves this vulnerability.

    Fixed in 3.7.14
  2. Upgrade

    Upgrade Argo Workflows to a version that resolves this vulnerability.

    Fixed in 4.0.5

Event History

May 9, 2026
Data Sourced
via Red Hat·05:01 AM
DescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2468446?

The severity of REDHAT-BUG-2468446 is classified as high with a score of 7.

2

What is the risk associated with REDHAT-BUG-2468446?

The risk associated with REDHAT-BUG-2468446 is rated at 33.

3

How do I fix REDHAT-BUG-2468446?

To fix REDHAT-BUG-2468446, upgrade to Argo Workflows version 3.7.14 or 4.0.5 or later.

4

What vulnerabilities does REDHAT-BUG-2468446 exploit?

REDHAT-BUG-2468446 exploits the ability of a user with create Workflow permissions to bypass templateReferencing: Strict.

5

Which version of Argo Workflows is affected by REDHAT-BUG-2468446?

Versions prior to 3.7.14 and 4.0.5 of Argo Workflows are affected by REDHAT-BUG-2468446.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203