VDB
GO-2026-4678
GO-2026-4678
PUBLISHED
Unauthorized access to Argo Workflows Template in github.com/argoproj/argo-workflows
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| github.com | argoproj/argo-workflows/v2 | 0, 0 |
| github.com | argoproj/argo-workflows/v4 | 0, 0 |
| github.com | argoproj/argo-workflows | 0, 0 |
| github.com | argoproj/argo-workflows/v3 | 0, 0 |
Timeline
- Mar 12, 2026 CVE Published
- Mar 23, 2026 CVE Updated
- May 1, 2026 Security Advisory
References
- https://github.com/argoproj/argo-workflows/security/advisories/GHSA-56px-hm34-xqj5 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-28229 advisory
- https://github.com/argoproj/argo-workflows/commit/34afaf9c0c36f1ba8645d483ea4752cfc4a391e8 patch
- https://github.com/argoproj/argo-workflows/releases/tag/v3.7.11 url
- https://github.com/argoproj/argo-workflows/releases/tag/v4.0.2 url