9.6
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Description
CVE-2026-42880 — ArgoCD Secret Exposure via ServerSideDiff A lab environment for reproducing and detecting CVE-2026-42880, a critical vulnerability in Argo CD where the ServerSideDiff gRPC handler exposes Kubernetes Secret data to read-only users. ---...
Basic Information
ID
DB66EC5E-FB97-55F4-A9EE-CEF4D6405837
Published
May 25, 2026 at 12:03
Modified
May 25, 2026 at 12:08