Known Vulnerabilities for Gitops by Weave.works
Listed below are 1 of the newest known vulnerabilities associated with "Gitops" by "Weave.works".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45738 json | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to 3.2.12, 3.3.10, and 3.4.2, Argo CD users w... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-45737 json | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From 3.2.0 until 3.2.12, 3.3.10, and 3.4.2, Argo CD... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-45625 json | Arcane is an interface for managing Docker containers, images, networks, and volumes. Prior to 1.19.0, Arcane's huma-based RE... | Not Provided | 2026-05-29 | 2026-06-01 |
| CVE-2026-42880 json | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From versions 3.2.0 to before 3.2.11 and 3.3.0 to b... | Not Provided | 2026-05-07 | 2026-07-20 |
| CVE-2026-15416 json | A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated att... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-14251 json | A flaw was found in the OpenShift GitOps operator. The ClusterRole reconciler does not validate resource ownership when recon... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2024-13484 json | A flaw was found in openshift-gitops-operator-container. The openshift.io/cluster-monitoring label is applied to all namespac... | Not Provided | 2025-01-28 | 2026-06-26 |
| CVE-2022-38790 json | Weave GitOps Enterprise before 0.9.0-rc.5 has a cross-site scripting (XSS) bug allowing a malicious user to inject a javascri... | 5.4 - MEDIUM | 2022-09-01 | 2022-09-07 |