CVE-2026-28229Disclosure(argoproj / argo_workflows)

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch argoproj argo_workflows systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to 4.0.2 and 3.7.11, Workflow templates endpoints allow any client to retrieve WorkflowTemplates (and ClusterWorkflowTemplates). Any request with a Authorization: Bearer nothing token can leak sensitive template content, including embedded Secret manifests. This vulnerability is fixed in 4.0.2 and 3.7.11.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-863CWE-306

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • argo_workflows

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 6 classified signals
  • Peaked 1d ago at 4 mentions (2026-03-11); latest day: 2
  • 6 total mentions across 2 days

Affected systems

Vendors
Products
argo_workflows

Deep dive

Activity timeline6 mentions / 2d
01234Mentions · 2026-03-11: 4Mentions · 2026-03-15: 2Patch / Workaround · 2026-03-11: 1Patch / Workaround · 2026-03-15: 1Technical Details · 2026-03-11: 403-1103-15
Signal classification1 categories
Disclosure
6100.0%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-03-114
Disclosure4
2026-03-152
Disclosure2
Full discourse6 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-28229 Unauthenticated Information Disclosure in Argo Workflows Before 4.0.2 and 3.7.11 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-28229

    Post summary

    A brief disclosure of CVE-2026-28229, an unauthenticated information disclosure vulnerability affecting Argo Workflows versions before 4.0.2 and 3.7.11, with a link to further details.

    0001021
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-28229 Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to 4.0.2 and 3.7.11, Workflow templates endpoin… https://www.cve.org/CVERecord?id=CVE-2026-28229 ----- Traducción: CVE-2026-28229 Arg… http://infoflow.cloud`

    Post summary

    The message links to a CVE record for Argo Workflows, providing minimal context but no proof of exploitation, patch information, or detailed technical data.

    0000037
    57 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-28229 Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to 4.0.2 and 3.7.11, Workflow templates endpoin… https://www.cve.org/CVERecord?id=CVE-2026-28229

    Post summary

    The text provides a brief disclosure of CVE‑2026‑28229 affecting Argo Workflows before versions 4.0.2 and 3.7.11, without any PoC, exploit details, or evidence of active exploitation.

    00000201
    56.7K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-28229: CRITICAL] Cybersecurity alert: Argo Workflows versions prior to 4.0.2 and 3.7.11 had a vulnerability leaking sensitive template content. Update to the fixed versions to secure your system.#cve,CVE-2026-28229,#cybersecurity https://cvefind.com/CVE-2026-28229

    Post summary

    The alert announces CVE‑2026‑28229, noting that Argo Workflows versions before 4.0.2/3.7.11 leak sensitive template content and urges users to update to patched releases.

    0000032
    602 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-28229 - Critical Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to 4.0.2 and 3.7.11, Workflow templates endpoints allow any client t... https://www.thehackerwire.com/vulnerability/CVE-2026-28229/ https://t.co/MdfrUrrjrT

    Post summary

    The post announces a critical vulnerability (CVE-2026-28229) in Argo Workflows affecting versions before 4.0.2 and 3.7.11, with no exploit or mitigation details provided.

    0000032
    134 followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2026-28229: Argo Workflows has unauthorized ... Bearer token "nothing" bypasses auth entirely - every Argo template with embedded secrets now public via unauthenticate... https://zerodaysignal.com/vulnerability/CVE-2026-28229 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The tweet announces a new authentication bypass in Argo Workflows (CVE-2026-28229) where the bearer token "nothing" ignores auth, exposing embedded secrets. No exploit code, patch, or evidence of active exploitation is provided.

    0000039
    143 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appargoprojargo_workflows-go-

Explore more