← Volver al buscador de CVEs

CVE-2025-68153

Juju

Descripción

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called -charms-. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, any authenticated user, machine or controller under a Juju controller can modify the resources of an application within the entire controller. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS 6.5EPSS 0.232%Riesgo 0.66
Ver fuente
Publicación
2026-04-03 16:16:23
Versiones afectadas
>=2.9,<2.9.56,>=3.6,<3.6.19
Tipo
Core software
Última modificación
2026-07-24 21:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N