An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 1.4% on proxy.golang.org
Top 1.5% dependent packages on proxy.golang.org
Top 1.5% dependent repos on proxy.golang.org
Top 1.4% forks on proxy.golang.org

proxy.golang.org : github.com/juju/juju

Package juju is devops distilled. Project homepage: https://github.com/juju/juju For more information please refer to the README.md file in this directory.

Registry - Source - Documentation - JSON - codemeta.json
purl: pkg:golang/github.com/juju/juju
Keywords: containers , devops , golang , juju , kubernetes , operations
License: AGPL-3.0
Latest release: almost 2 years ago
First release: over 3 years ago
Namespace: github.com/juju
Dependent packages: 12
Dependent repositories: 13
Stars: 2,550 on GitHub
Forks: 562 on GitHub
Docker dependents: 2
Docker downloads: 44
Total Commits: 55953
Committers: 281
Average commits per author: 199.121
Development Distribution Score (DDS): 0.935
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Last synced: 1 day ago

High
GSA_kwCzR0hTQS00dmM4LXd2aHctbTVnds4ABJ9u
Juju allows arbitrary executable uploads via authenticated endpoint without authorization
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: 5 months ago
Moderate
GSA_kwCzR0hTQS1yNjR2LTgyZmgteGM2M84ABJ9t
Juju vulnerable to sensitive log retrieval via authenticated endpoint without authorization
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: 5 months ago
High
GSA_kwCzR0hTQS0yNGNoLXczOHYteG1oOM4ABJ9n
Juju zip slip vulnerability via authenticated endpoint
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: 5 months ago
Moderate
GSA_kwCzR0hTQS14d2dqLXZwbTktcTJycc4AA_71
Vulnerable juju introspection abstract UNIX domain socket
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS04djR3LWY0cjktN2g2eM4AA_70
Vulnerable juju hook tool abstract UNIX domain socket
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1taDk4LTc2M2gtbTl2NM4AA_7w
JUJU_CONTEXT_ID is a predictable authentication secret
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS04NXFmLTY4NDUtbThwMs4AA_6g
Duplicate Advisory: Juju Unprotected Alternate Channel vulnerability
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
Withdrawn: about 1 year ago
Moderate
GSA_kwCzR0hTQS1mYzI3LTdwZjUtOTZ2M84AA_6k
Duplicate Advisory: Vulnerable juju hook tool abstract UNIX domain socket
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
Withdrawn: about 1 year ago
High
GSA_kwCzR0hTQS1waGg0LTNobW0tMjRyeM4AA_6i
Duplicate Advisory: Juju makes Use of Weak Credentials
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: about 1 year ago
Withdrawn: about 1 year ago
High
GSA_kwCzR0hTQS02dmptLTU0dnAtbXhoeM4AA-YR
Juju's unprivileged user running on charm node can leak any secret or relation data accessible to the local charm
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: over 1 year ago
High
GSA_kwCzR0hTQS04YzY0LXE3OHEtODdyNs4AA-LV
Duplicate Advisory: Juju leaks of the sensitive context ID
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: over 1 year ago
Withdrawn: over 1 year ago
Moderate
GSA_kwCzR0hTQS14NXJ2LXc5cG0tOHFwOM4AAx5R
Juju controller - Arbitrary file reading vulnerability
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: almost 3 years ago
Critical
GSA_kwCzR0hTQS1qM2hwLXB2NnYtcmdyeM4AASgQ
Juju uses a UNIX domain socket without setting appropriate permissions
Ecosystems: go
Packages: github.com/juju/juju
Source: github
Published: over 3 years ago