CVE-2026-5774
Medium Severity
Description
Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, and 2.9.56 may allow an authenticated user to possibly cause ...
Related Vulnerabilities
- CVE-2026-40184: TREK is a collaborative travel planner. Prior to 2.7.2, TREK served uploaded photos without requirin LOW
- CVE-2026-23900: Various stored XSS vulnerabilities in the maps- and icon rendering logic in Phoca Maps component 5.0 MEDIUM
- CVE-2026-6068: NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling MEDIUM
- CVE-2026-29146: Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration.
This MEDIUM
- CVE-2026-40153: PraisonAIAgents is a multi-agent teams system. Prior to 1.5.128, the execute_command function in she HIGH
Related Coverage
Threat Actors