CVE-2026-15416
argoproj argo-helm, Red Hat Openshift Data Foundation 4, Red Hat OpenShift GitOps
A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated attacker with network access to the Argo CD repo-server to achieve remote code execution. Under certain conditions, the attacker may then manipulate cached data to deploy malicious Kubernetes resources to managed clusters, potentially resulting in complete cluster compromise.
- CVSS
- 8.9
- EPSS
- 0.28% 20.4% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.14