{"api_version":"v1","generated_at":"2026-10-09T15:05:00+00:00","product":{"cve_count":10,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-canonical-juju-6f7a55825890","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/juju","name":"Juju","next_cursor":null,"observations":[{"affected":"2.9.0 < 2.9.57; 3.6.0 < 3.6.21","affected_versions_present":true,"cve_id":"CVE-2026-5412","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-5412","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-10T14:04:30.155Z","patch_url":"https://github.com/juju/juju/pull/22206","primary_source":"","published":"2026-04-10T12:22:05.403Z"},{"affected":"2.0.0 < 2.9.57; 3.0.0 < 3.6.21; 4.0.0 < 4.0.6","affected_versions_present":true,"cve_id":"CVE-2026-5774","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-5774","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-10T12:41:28.720Z","patch_url":"","primary_source":"","published":"2026-04-10T12:10:55.634Z"},{"affected":"3.2.0 < 3.6.20; 4.0 < 4.0.4","affected_versions_present":true,"cve_id":"CVE-2026-4370","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4370","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T07:27:16.821Z","patch_url":"","primary_source":"","published":"2026-04-01T08:09:17.570Z"},{"affected":"3.0.0 < 3.6.19","affected_versions_present":true,"cve_id":"CVE-2026-32694","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32694","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-18T13:40:33.981Z","patch_url":"","primary_source":"","published":"2026-03-18T12:55:42.948Z"},{"affected":"3.0.0 < 3.6.19","affected_versions_present":true,"cve_id":"CVE-2026-32693","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32693","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-18T13:19:58.719Z","patch_url":"","primary_source":"","published":"2026-03-18T12:47:02.982Z"},{"affected":"3.1.6 < 3.6.19","affected_versions_present":true,"cve_id":"CVE-2026-32692","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32692","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-18T13:42:54.697Z","patch_url":"","primary_source":"","published":"2026-03-18T12:35:29.274Z"},{"affected":"3.0.0 < 3.6.19","affected_versions_present":true,"cve_id":"CVE-2026-32691","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32691","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-18T13:49:09.338Z","patch_url":"","primary_source":"","published":"2026-03-18T12:28:11.546Z"},{"affected":"version range in vendor record","affected_versions_present":true,"cve_id":"CVE-2026-1237","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-1237","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-01-28T15:06:23.120Z","patch_url":"","primary_source":"","published":"2026-01-28T15:01:46.364Z"},{"affected":"2.0.0 < 2.9.52; 3.0.0 < 3.6.8","affected_versions_present":true,"cve_id":"CVE-2025-0928","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-0928","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-08T17:36:20.075Z","patch_url":"","primary_source":"","published":"2025-07-08T17:20:04.608Z"},{"affected":"2.0.0 < 2.9.52; 3.0.0 < 3.6.8","affected_versions_present":true,"cve_id":"CVE-2025-53513","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53513","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-09T14:00:10.613Z","patch_url":"","primary_source":"","published":"2025-07-08T16:57:06.351Z"},{"affected":"2.0.0 < 2.9.52; 3.0.0 < 3.6.8","affected_versions_present":true,"cve_id":"CVE-2025-53512","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53512","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-08T19:09:24.844Z","patch_url":"","primary_source":"","published":"2025-07-08T16:47:44.427Z"},{"affected":"2.9.22 < 2.9.38; 3.0.0 < 3.0.3; 2.9.38 < 3.0.3","affected_versions_present":true,"cve_id":"CVE-2023-0092","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-0092","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-02-07T16:10:14.052Z","patch_url":"https://github.com/juju/juju/commit/ef803e2a13692d355b784b7da8b4b1f01dab1556","primary_source":"","published":"2025-01-31T01:41:46.439Z"},{"affected":"3.5 < 3.5.4; 3.4 < 3.4.6; 3.3 < 3.3.7; 3.1 < 3.1.10; 2.9 < 2.9.51","affected_versions_present":true,"cve_id":"CVE-2024-8038","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-8038","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-02T13:53:24.639Z","patch_url":"https://github.com/juju/juju/security/advisories/GHSA-xwgj-vpm9-q2rq","primary_source":"","published":"2024-10-02T10:12:38.806Z"},{"affected":"3.5 < 3.5.4; 3.4 < 3.4.6; 3.3 < 3.3.7; 3.1 < 3.1.10; 2.9 < 2.9.51","affected_versions_present":true,"cve_id":"CVE-2024-8037","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-8037","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-01T15:31:40.233Z","patch_url":"https://github.com/juju/juju/security/advisories/GHSA-8v4w-f4r9-7h6x","primary_source":"","published":"2024-10-02T10:12:32.318Z"},{"affected":"3.5 < 3.5.4; 3.4 < 3.4.6; 3.3 < 3.3.7; 3.1 < 3.1.10; 2.9 < 2.9.51","affected_versions_present":true,"cve_id":"CVE-2024-7558","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-7558","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-02T13:59:04.171Z","patch_url":"https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4","primary_source":"","published":"2024-10-02T10:06:31.098Z"},{"affected":"3.5 < 3.5.3; 3.4 < 3.4.5; 3.3 < 3.3.5; 3.1 < 3.1.9; 2.9 < 2.9.50","affected_versions_present":true,"cve_id":"CVE-2024-6984","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-6984","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-01T21:45:38.419Z","patch_url":"https://github.com/juju/juju/commit/da929676853092a29ddf8d589468cf85ba3efaf2","primary_source":"","published":"2024-07-29T14:04:05.925Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Canonical Ltd."}}
