high · CVSS v3 7.7 · CVSS v4 8.3
CVE-2026-93991
Argo Workflows versions 4.1.0 through 4.1.3 contain an authorization bypass vulnerability in ListArchivedWorkflows that …
Description
Argo Workflows versions 4.1.0 through 4.1.3 contain an authorization bypass vulnerability in ListArchivedWorkflows that fails to apply cluster-scoped access review when the metadata.namespace field selector uses the NotEquals operator. Attackers with namespace-scoped list permissions can use a negated namespace field selector to retrieve archived workflows from all other namespaces, exposing spec arguments, parameter values, and annotations.
Scores
- Severity
- high
- CVSS v2
- 6.8
- CVSS v3
- 7.7
- CVSS v4
- 8.3
- EPSS
- —