Affected by GO-2024-3303
and 6 other vulnerabilities
GO-2024-3303: Argo Workflows Allows Access to Archived Workflows with Fake Token in `client` mode in github.com/argoproj/argo-workflows
GO-2025-4023: Argo Workflow has a Zipslip Vulnerability in github.com/argoproj/argo-workflows
GO-2025-4024: Argo Workflow may expose artifact repository credentials in github.com/argoproj/argo-workflows
GO-2025-4223: RCE via ZipSlip and symbolic links in argoproj/argo-workflows in github.com/argoproj/argo-workflows
GO-2026-4350: Argo Workflows affected by stored XSS in the artifact directory listing in github.com/argoproj/argo-workflows
GO-2026-4678: Unauthorized access to Argo Workflows Template in github.com/argoproj/argo-workflows
GO-2026-4681: Argo Workflows: WorkflowTemplate Security Bypass via podSpecPatch in Strict/Secure Reference Mode in github.com/argoproj/argo-workflows

The highest tagged major version is
v4.
directory
Version:
v3.6.0-rc2
Opens a new window with list of versions in this module.
Published: Oct 2, 2024
License: Apache-2.0
Opens a new window with license information.
README
¶
hack/ scripts
This directory contains various automation scripts or "hacks".
The directory structure roughly follows the top-level structure:
Modifications
When adding or deleting files in this directory, make sure to also update the Makefile and the GitHub Actions
Directories
¶
api
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Click to show internal directories.
Click to hide internal directories.