CVE-2026-108585 | argoproj-labs argocd-mcp up to 0.9.0 delete_application applicationName path traversal (EUVD-2026-96372)

SecurityVulns

A vulnerability categorized as problematic has been discovered in argoproj-labs argocd-mcp up to 0.9.0. This affects the function delete_application. Executing a manipulation of the argument applicationName can lead to path traversal.

This vulnerability is tracked as CVE-2026-108585. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More