Report: CVE-2025-68152 - Juju: Read All Controller Logs From Compromised Workload - Expert Insights

Report: CVE-2025-68152 - Juju: Read All Controller Logs From Compromised Workload - Expert Insights

CVE ID :CVE-2025-68152 Published : April 3, 2026, 3:25 p.m. | 21 minutes ago Description :Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ‘charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, it is possible that a compromised workload machine under a Juju controller can read any log file for any entity in any model at any level. This issue has been patched in versions 2.9.56 and 3.6.19. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
April 3, 2026