Skip to main content

Vendor/product archive

canonical / juju CVEs

Beta · best-effort

19 CVEs tagged to canonical / juju3 Critical, 8 High, 8 Medium, 0 Low, 0 Unrated.

CVE-2026-5774

Published Apr 10, 2026

Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, and 2.9.56 may allow an authenticated user to possibly cause a denial of service…

CVSS 6.0 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-5412

Published Apr 10, 2026

In Juju versions prior to 2.9.57 and 3.6.21, an authorization issue exists in the Controller facade. An authenticated user can call the CloudSpec API method to extract the cloud c…

CVSS 9.9 · Critical
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2025-68153

Published Apr 3, 2026

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From v…

CVSS 7.1 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-68152

Published Apr 3, 2026

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From v…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-4370

Published Apr 1, 2026

A vulnerability was identified in Juju from version 3.2.0 until 3.6.19 and from version 4.0 until 4.0.4, where the internal Dqlite database cluster fails to perform proper TLS cli…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32694

Published Mar 18, 2026

In Juju from version 3.0.0 through 3.6.18, when a secret owner grants permissions to a secret to a grantee, the secret owner relies exclusively on a predictable XID of the secret…

CVSS 6.6 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32693

Published Mar 18, 2026

In Juju from version 3.0.0 through 3.6.18, the authorization of the "secret-set" tool is not performed correctly, which allows a grantee to update the secret content, and can lead…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32692

Published Mar 18, 2026

An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.1.6 through 3.6.18 allows an authenticated unit agent to perform unauthorized…

CVSS 7.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32691

Published Mar 18, 2026

A race condition in the secrets management subsystem of Juju versions 3.0.0 through 3.6.18 allows an authenticated unit agent to claim ownership of a newly initialized secret. Bet…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-0928

Published Jul 8, 2025

In Juju versions prior to 3.6.8 and 2.9.52, any authenticated controller user was allowed to upload arbitrary agent binaries to any model or to the controller itself, without veri…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-53513

Published Jul 8, 2025

The /charms endpoint on a Juju controller lacked sufficient authorization checks, allowing any user with an account on the controller to upload a charm. Uploading a malicious char…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-53512

Published Jul 8, 2025

The /log endpoint on a Juju controller lacked sufficient authorization checks, allowing unauthorized users to access debug messages that could contain sensitive information.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0092

Published Jan 31, 2025

An authenticated user who has read access to the juju controller model, may construct a remote request to download an arbitrary file from the controller's filesystem.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8038

Published Oct 2, 2024

Vulnerable juju introspection abstract UNIX domain socket. An abstract UNIX domain socket responsible for introspection is available without authentication locally to network name…

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8037

Published Oct 2, 2024

Vulnerable juju hook tool abstract UNIX domain socket. When combined with an attack of JUJU_CONTEXT_ID, any user on the local system with access to the default network namespace m…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-6984

Published Jul 29, 2024

An issue was discovered in Juju that resulted in the leak of the sensitive context ID, which allows a local unprivileged attacker to access other sensitive data or relation access…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-1316

Published Apr 22, 2019

Juju Core's Joyent provider before version 1.25.5 uploads the user's private ssh key.

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9232

Published May 28, 2017

Juju before 1.25.12, 2.0.x before 2.0.4, and 2.1.x before 2.1.3 uses a UNIX domain socket without setting appropriate permissions, allowing privilege escalation by users on the sy…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-19 of 19 CVEsPage 1 of 1