CNNVD-202601-4753 Information

CNNVD ID

CNNVD-202601-4753

CVE-2026-1237

  • CNNVD Published: 2026-01-28

Description (Chinese)

Juju是Canonical Juju开源的一个开源应用程序编排引擎。 Juju存在安全漏洞,该漏洞源于跨模型授权存在缺陷,可能导致恶意用户维持已撤销或过期的权限。

Description (English)

Juju is an open source application layout engine at Canonical Juju Open Source. There is a security loophole in Juju, which stems from deficiencies in cross-model authorization and may lead to malicious users maintaining withdrawn or expired privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Canonical Juju

Published

2026-01-28

Last Modified

2026-02-24

References

https://github.com/juju/juju/security/advisories/GHSA-j477-6vpg-6c8x https://access.redhat.com/security/cve/cve-2026-1237

Share on: