Argo CD Security Update Advisory (CVE-2025-55190)
Overview
We have released a security update to address a vulnerability in Argo CD. Affected product users are advised to update to the latest version.
Affected Products
CVE-2025-55190
Argo CD versions: 2.2.0-rc1 and later
Resolved Vulnerabilities
Credential Exposure Vulnerability in Argo CD (CVE-2025-55190)
Vulnerability Patches
vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-55190
Argo CD version: v3.1.2
Argo CD Version: v3.0.14
Argo CD Version: v2.14.16
Argo CD version: v2.13.9
References
[1] Project API Token Exposes Repository Credentials
https://github.com/argoproj/argo-cd/security/advisories/GHSA-786q-9hcg-v9ff