Database/Container, Kubernetes & orchestration
Argo Workflows Helm chart (argo-helm, workflow-role RBAC): The chart's workflow-role grants create on pods/exec to
Impact
The chart's workflow-role grants create on pods/exec to every workflow pod, which since Argo 3.4 and the Emissary executor is no longer needed. Any workflow can therefore exec into any other pod in the same namespace and run commands there - a tenant who gets a colleague to run a malicious template owns the whole namespace.
Who can reach it
A user who can get a workflow template executed in the namespace. Requires the argo-workflows Helm chart below 0.44.0 with appVersion 3.4 or above; upstream plain manifests are not affected.
What to do
Upgrade the argo-workflows Helm chart to 0.44.0 or later and apply it. This is an RBAC Role change, so it takes effect on apply without restarting the controller. If you templated the chart into your own manifests, strip pods/exec from workflow-role directly.
References
Related entries
- Podman: podman machine init pulls VM images from an OCI registry without verifying the TLS certificateCVE-2025-6032 · Podman (podman machine init VM image download)High
- Rancher: CLI login with -skip-verify and no --cacert silently accepts any certificateCVE-2025-67601 · RancherHigh
- Kyverno: namespaced policies can read cluster-scoped GlobalContextEntry data from other namespacesCVE-2026-100703 · Kyverno admission controller (globalcontext.Lib CEL library, namespaced policies)High
- Kyverno: a PolicyException meant to exempt one image disables image signature verification for the whole resourceCVE-2026-100704 · Kyverno ImageValidatingPolicy evaluator (PolicyException spec.images / spec.allowedValues ignored)High
- Kyverno: legacy apiCall path skips the egress blocklist, allowing SSRF to cloud metadata from the admission controllerCVE-2026-100705 · Kyverno admission controller (legacy apiCall service executor / GlobalContextEntry)High
- Kyverno: percent-encoded dot-segments in apiCall urlPath bypass namespace scoping in namespaced PoliciesCVE-2026-100707 · Kyverno admission controller (namespaced Policy apiCall urlPath validation)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.