pkg:Go/github.com/argoproj/argo-workflows/v2

9 total CVEsHIGH3MEDIUM2

✅ Check your installed version

All known vulnerabilities

  • HIGH8.1CVE-2025-66626argoproj/argo-workflows is vulnerable to RCE via ZipSlip and symbolic links
    from 0
  • HIGH8.1CVE-2025-62156argo-workflows Zip Slip path traversal allows arbitrary file write and container configuration overwrite
    from 0
  • HIGH7.5CVE-2026-28229Argo Workflows has unauthorized access to Argo Workflows Template
    from 0
  • MEDIUM6.5CVE-2021-37914Workflow re-write vulnerability using input parameter in github.com/argoproj/argo-workflows
    from 0
  • MEDIUM5.7CVE-2024-47827Argo Workflows Controller: Denial of Service via malicious daemon Workflows in github.com/argoproj/argo-workflows
    from 0
  • CVE-2026-31892WorkflowTemplate Security Bypass via podSpecPatch in Strict/Secure Reference Mode
    >= 2.9.0
  • CVE-2026-23960Argo Workflows affected by stored XSS in the artifact directory listing
    from 0
  • CVE-2025-62157Argo Workflows exposes artifact repository credentials in workflow-controller logs
    from 0
  • CVE-2024-53862Argo Workflows Allows Access to Archived Workflows with Fake Token in `client` mode
    from 0