Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2025-68152

5 месяцев назад

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, it is possible that a compromised workload machine under a Juju controller can read any log file for any entity in any model at any level. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2025-68152

5 месяцев назад

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, it is possible that a compromised workload machine under a Juju controller can read any log file for any entity in any model at any level. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2025-68152

5 месяцев назад

Juju is an open source application orchestration engine that enables a ...

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-j6f6-jp3p-53mw

5 месяцев назад

Juju: Read All Controller Logs From Compromised Workload

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-68152

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, it is possible that a compromised workload machine under a Juju controller can read any log file for any entity in any model at any level. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS3: 4.9
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-68152

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, it is possible that a compromised workload machine under a Juju controller can read any log file for any entity in any model at any level. This issue has been patched in versions 2.9.56 and 3.6.19.

CVSS3: 4.9
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-68152

Juju is an open source application orchestration engine that enables a ...

CVSS3: 4.9
0%
Низкий
5 месяцев назад
github логотип
GHSA-j6f6-jp3p-53mw

Juju: Read All Controller Logs From Compromised Workload

CVSS3: 4.9
0%
Низкий
5 месяцев назад

Уязвимостей на страницу