CVE-2026-31892: CWE-863: Incorrect Authorization in argoproj argo-workflows
Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From 2.9.0 to before 4.0.2 and 3.7.11, A user who can submit Workflows can completely bypass all security settings defined in a WorkflowTemplate by including a podSpecPatch field in their Workflow submission. This works even when the controller is configured with templateReferencing: Strict, which is specifically documented as a mechanism to restrict users to admin-approved templates. The podSpecPatch field on a submitted Workflow takes precedence over the referenced WorkflowTemplate during spec merging and is applied directly to the pod spec at creation time with no security validation. This vulnerability is fixed in 4.0.2 and 3.7.11.
AI Analysis
Technical Summary
Argo Workflows versions >=2.9.0 <4.0.2 and >=3.7.0 <3.7.11 contain an incorrect authorization vulnerability (CWE-863) where a user able to submit workflows can bypass security settings defined in WorkflowTemplates by including a podSpecPatch field in their workflow submission. This field takes precedence over the referenced WorkflowTemplate during spec merging and is applied directly to the pod spec without security validation, even when the controller is configured with templateReferencing: Strict. This allows the user to circumvent admin-approved template restrictions. The vulnerability is addressed in versions 4.0.2 and 3.7.11. The CVSS 4.0 score is 8.9 (high severity), indicating network attack vector, low attack complexity, partial privileges required, no user interaction, and high impacts on confidentiality, integrity, availability, scope, and security requirements.
Potential Impact
An attacker with the ability to submit workflows can bypass all security controls defined in WorkflowTemplates by manipulating the podSpecPatch field. This can lead to unauthorized privilege escalation or execution of arbitrary pod specifications, undermining the intended security policies and potentially compromising the Kubernetes environment where Argo Workflows is deployed.
Mitigation Recommendations
An official fix is available. Users should upgrade to argoproj argo-workflows versions 4.0.2 or 3.7.11 or later to remediate this vulnerability. Until upgraded, restricting workflow submission permissions and monitoring for unusual podSpecPatch usage may reduce risk, but patching is the definitive mitigation.
CVE-2026-31892: CWE-863: Incorrect Authorization in argoproj argo-workflows
Description
Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From 2.9.0 to before 4.0.2 and 3.7.11, A user who can submit Workflows can completely bypass all security settings defined in a WorkflowTemplate by including a podSpecPatch field in their Workflow submission. This works even when the controller is configured with templateReferencing: Strict, which is specifically documented as a mechanism to restrict users to admin-approved templates. The podSpecPatch field on a submitted Workflow takes precedence over the referenced WorkflowTemplate during spec merging and is applied directly to the pod spec at creation time with no security validation. This vulnerability is fixed in 4.0.2 and 3.7.11.
CVSS v4.0
Score 8.9high
Affected software
pkg:github/argoproj/argo-workflowsRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
Argo Workflows versions >=2.9.0 <4.0.2 and >=3.7.0 <3.7.11 contain an incorrect authorization vulnerability (CWE-863) where a user able to submit workflows can bypass security settings defined in WorkflowTemplates by including a podSpecPatch field in their workflow submission. This field takes precedence over the referenced WorkflowTemplate during spec merging and is applied directly to the pod spec without security validation, even when the controller is configured with templateReferencing: Strict. This allows the user to circumvent admin-approved template restrictions. The vulnerability is addressed in versions 4.0.2 and 3.7.11. The CVSS 4.0 score is 8.9 (high severity), indicating network attack vector, low attack complexity, partial privileges required, no user interaction, and high impacts on confidentiality, integrity, availability, scope, and security requirements.
Potential Impact
An attacker with the ability to submit workflows can bypass all security controls defined in WorkflowTemplates by manipulating the podSpecPatch field. This can lead to unauthorized privilege escalation or execution of arbitrary pod specifications, undermining the intended security policies and potentially compromising the Kubernetes environment where Argo Workflows is deployed.
Mitigation Recommendations
An official fix is available. Users should upgrade to argoproj argo-workflows versions 4.0.2 or 3.7.11 or later to remediate this vulnerability. Until upgraded, restricting workflow submission permissions and monitoring for unusual podSpecPatch usage may reduce risk, but patching is the definitive mitigation.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- GitHub_M
- Date Reserved
- 2026-03-09T21:59:02.687Z
- Cvss Version
- 4.0
- State
- PUBLISHED
- Vendor Advisory Urls
- [{"url":"https://access.redhat.com/security/cve/CVE-2026-31892","vendor":"Red Hat"},{"url":"https://access.redhat.com/errata/RHSA-2026:10184","vendor":"Red Hat"}]
Threat ID: 69b1917d2f860ef9432c8e48
Added to database: 03/11/2026, 15:59:57 UTC
Last enriched: 07/15/2026, 08:54:40 UTC
Last updated: 07/31/2026, 19:22:58 UTC
Views: 256
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.