CVE-2026-5412
Last modified
CVE-2026-5412 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. In Juju versions prior to 2.9.57 and 3.6.21, an authorization issue exists in the Controller facade. An authenticated user can call the CloudSpec API method to extract the cloud credentials used to bootstrap the controller. EPSS estimates a 0.45% chance of exploitation in the next 30 days.
Description
In Juju versions prior to 2.9.57 and 3.6.21, an authorization issue exists in the Controller facade. An authenticated user can call the CloudSpec API method to extract the cloud credentials used to bootstrap the controller. This allows a low-privileged user to access sensitive credentials. This issue is resolved in Juju versions 2.9.57 and 3.6.21.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Canonical | Juju | < 2.9.57 |
| Canonical | Juju | >= 3.6, < 3.6.21 |
References
- https://github.com/juju/juju/pull/22205Issue Tracking, Patch
- https://github.com/juju/juju/pull/22206Issue Tracking, Patch
- https://github.com/juju/juju/security/advisories/GHSA-w5fq-8965-c969Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-5412?
How severe is CVE-2026-5412?
How do I fix CVE-2026-5412?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-54114Use after free in Windows Win32K allows an authorized attack…7.8
- CVE-2026-54115Integer overflow or wraparound in Windows Active Directory a…7.8
- CVE-2026-54116Access of resource using incompatible type ('type confusion'…6.5
- CVE-2026-54117Deserialization of untrusted data in SQL Server allows an au…8.8
- CVE-2026-54118Deserialization of untrusted data in SQL Server allows an au…8.8
- CVE-2026-54119Loop with unreachable exit condition ('infinite loop') in Wi…7.5
- CVE-2026-54120Improper input validation in Microsoft Surface allows an aut…8.8
- CVE-2026-54121Improper authorization in Active Directory Certificate Servi…8.8
- CVE-2026-54122Heap-based buffer overflow in Windows GDI+ allows an unautho…8.4
- CVE-2026-54123Exposure of sensitive information to an unauthorized actor i…5.5
- CVE-2026-54124Integer overflow or wraparound in Windows Terminal allows an…7.8
- CVE-2026-54125Concurrent execution using shared resource with improper syn…7.8
Are you affected by CVE-2026-5412?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
