← Voltar à pesquisa de CVEs

CVE-2025-68153

Juju

Descrição

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called -charms-. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, any authenticated user, machine or controller under a Juju controller can modify the resources of an application within the entire controller. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS 6.5EPSS 0.232%Risco 0.66
Ver fonte
Publicação
2026-04-03 16:16:23
Versões afetadas
>=2.9,<2.9.56,>=3.6,<3.6.19
Tipo
Core software
Última alteração
2026-07-24 21:10:00
Vetor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N