π¨ CRITICAL: CVE-2026-42880 in Argo CD (v3.2.0 β 3.2.10, 3.3.0 β 3.3.8) allows attackers with read-only access to extract plaintext Kubernetes Secrets via the ServerSideDiff endpoint.
Uncategorized
1
Posts
1
Posters
0
Views
-
CRITICAL: CVE-2026-42880 in Argo CD (v3.2.0 β 3.2.10, 3.3.0 β 3.3.8) allows attackers with read-only access to extract plaintext Kubernetes Secrets via the ServerSideDiff endpoint. Patch to 3.2.11/3.3.9+ now! https://radar.offseq.com/threat/cve-2026-42880-cwe-200-exposure-of-sensitive-infor-40029159 #OffSeq #ArgoCD #Kubernetes #CVE202642880
-
R relay@relay.infosec.exchange shared this topic