Inclusion of Sensitive Information in Log Files in Argo CD - #VU129010
Published: March 8, 2021 / Updated: May 2, 2026
Argo CD
Argo
Description
The vulnerability allows a local user to disclose sensitive credentials.
The vulnerability exists due to insertion of sensitive information into log files in Argo CD logging when connecting to an authenticated Helm OCI repository. A local user can read pod logs or aggregated log data to disclose sensitive credentials.
User interaction is required.