PT-2026-109675 · Argoproj · Argocd-Mcp

·

CVE-2026-108585

·

Published

2026-10-10

·

Updated

2026-10-10

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
argocd-mcp (Argo CD MCP Server) through 0.9.0 contains a path traversal vulnerability in the delete application tool that allows MCP clients to reach unintended API endpoints via unvalidated applicationName values. Attackers or prompt-injected models can supply dot-segment values like ../repositories/ to send authenticated DELETE requests deleting repositories, clusters, or projects within the token's RBAC permissions.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-108585

Affected Products

Argocd-Mcp