CVE-2025-68153: Juju has a resource poisoning vulnerability
(updated )
Any authenticated user, machine or controller under a Juju controller can modify the resources of an application within the entire controller.
This one is very straightforward to just read in the code:
References
Code Behaviors & Features
Detect and mitigate CVE-2025-68153 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →