Argo Workflows patched CVE-2026-54526, a privilege-escalation flaw that lets a user bypass Strict and Secure workflowTemplateRef protections through the allow-listed WorkflowSpec.ArtifactGC field. The issue stems from an incomplete fix for CVE-2026-31892: validation only checked top-level WorkflowSpec fields, while nested ArtifactGC settings such as podSpecPatch, serviceAccountName, and podMetadata could still reach the artifact garbage-collection pod unsanitized. In affected deployments, an attacker able to submit a Workflow referencing a hardened WorkflowTemplate could inject a strategic merge patch into the artifact-GC pod when output artifacts and OnWorkflowCompletion cleanup were in use.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
CVE-2026-54526 was disclosed as an incomplete fix for CVE-2026-31892 in Argo Workflows, allowing bypass of Strict and Secure template reference protections through WorkflowSpec.ArtifactGC.PodSpecPatch. The disclosure states the issue is fixed in Argo Workflows versions 3.7.15 and 4.0.6.
On June 10, 2026, Argo Workflows merged commits fixing a privilege-escalation issue in Strict/Secure workflowTemplateRef mode where nested ArtifactGC fields such as podSpecPatch, serviceAccountName, and podMetadata could be used to control the artifact-GC pod. The patch updated validation and sanitization logic to block or strip those sensitive nested fields while preserving benign ArtifactGC settings.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
cvefeed.io
Open sourcegithub.com
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.