Argo CD Security Update Advisory (CVE-2025-55190)

Argo CD Security Update Advisory (CVE-2025-55190)

Overview

 

We have released a security update to address a vulnerability in Argo CD. Affected product users are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-55190

 

Argo CD versions: 2.2.0-rc1 and later

 

 

Resolved Vulnerabilities

 

Credential Exposure Vulnerability in Argo CD (CVE-2025-55190)

 

 

Vulnerability Patches

vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-55190

 

Argo CD version: v3.1.2
Argo CD Version: v3.0.14
Argo CD Version: v2.14.16
Argo CD version: v2.13.9

 

 

References

 

[1] Project API Token Exposes Repository Credentials
https://github.com/argoproj/argo-cd/security/advisories/GHSA-786q-9hcg-v9ff