Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-32692

Опубликовано: 18 мар. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.6

Описание

An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.1.6 through 3.6.18 allows an authenticated unit agent to perform unauthorized updates to secret revisions. With sufficient information, an attacker can poison any existing secret revision within the scope of that Vault secret back-end.

РелизСтатусПримечание
devel

DNE

jammy

DNE

noble

DNE

questing

DNE

resolute

DNE

snap

needs-triage

upstream

needs-triage

Показывать по

EPSS

Процентиль: 6%
0.00166
Низкий

7.6 High

CVSS3

Связанные уязвимости

CVSS3: 7.6
nvd
5 месяцев назад

An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.1.6 through 3.6.18 allows an authenticated unit agent to perform unauthorized updates to secret revisions. With sufficient information, an attacker can poison any existing secret revision within the scope of that Vault secret back-end.

CVSS3: 7.6
debian
5 месяцев назад

An authorization bypass vulnerability in the Vault secrets back-end im ...

CVSS3: 7.6
github
5 месяцев назад

Juju has unauthorized update of out-of-scope Vault secrets

EPSS

Процентиль: 6%
0.00166
Низкий

7.6 High

CVSS3