Security Advisory

CVE-2026-15416

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-14 08:56:29
Last updated 2026-07-15 14:39:52
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated attacker with network access to the Argo CD repo-server to achieve remote code execution. Under certain conditions, the attacker may then manipulate cached data to deploy malicious Kubernetes resources to managed clusters, potentially resulting in complete cluster compromise.