📦 Junos Os Evolved

by Juniper

🔍 What is Junos Os Evolved?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-0211

CRITICAL CVSS 10.0 Jan 15, 2021

This vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows attackers to send specially crafted BGP FlowSpec messages that cause route advertisement disruptions, leading to denial of s...

CVE-2026-21908

HIGH CVSS 7.1 Jan 15, 2026

A use-after-free vulnerability in Juniper's 802.1X authentication daemon (dot1xd) allows authenticated, network-adjacent attackers to crash the daemon or potentially execute arbitrary code as root. Th...

CVE-2025-59960

HIGH CVSS 7.4 Jan 15, 2026

A vulnerability in Juniper's DHCP service allows a DHCP client in one subnet to exhaust address pools in other subnets, causing Denial of Service on downstream DHCP servers. This affects Junos OS and ...

CVE-2025-60003

HIGH CVSS 7.5 Jan 15, 2026

A buffer over-read vulnerability in Juniper's routing protocol daemon (rpd) allows unauthenticated attackers to cause denial-of-service by sending specially crafted BGP updates. The vulnerability affe...

CVE-2025-60004

HIGH CVSS 7.5 Oct 9, 2025

An unauthenticated network attacker can cause a denial-of-service by sending a specific BGP EVPN update message to Juniper Junos OS and Junos OS Evolved devices, crashing the routing protocol daemon. ...

CVE-2025-52954

HIGH CVSS 7.8 Jul 11, 2025

A Missing Authorization vulnerability in Juniper Networks Junos OS Evolved allows local low-privileged users to gain root privileges by sending packets over the internal VRF. This enables arbitrary co...

CVE-2025-30648

HIGH CVSS 7.4 Apr 9, 2025

An unauthenticated adjacent attacker can send a malformed DHCP packet to crash the Juniper DHCP daemon (jdhcpd) when dhcp-security is enabled, causing DHCP service denial. The service automatically re...

CVE-2025-30651

HIGH CVSS 7.5 Apr 9, 2025

An unauthenticated network attacker can send a specific ICMPv6 packet to cause the routing protocol daemon (rpd) to crash and restart, leading to denial of service. This affects Juniper Networks Junos...

CVE-2024-39564

HIGH CVSS 7.5 Feb 5, 2025

A double-free vulnerability in Juniper Junos OS and Junos OS Evolved routing process daemon (rpd) allows attackers to cause denial of service by sending malformed BGP path attribute updates. This affe...

CVE-2025-21598

HIGH CVSS 7.5 Jan 9, 2025

An out-of-bounds read vulnerability in Juniper Junos OS and Junos OS Evolved routing protocol daemon (rpd) allows unauthenticated attackers to crash the daemon by sending malformed BGP packets when pa...

CVE-2025-21599

HIGH CVSS 7.5 Jan 9, 2025

This CVE describes a memory leak vulnerability in Juniper's Tunnel Driver (jtd) on Junos OS Evolved. Unauthenticated attackers can send specially crafted IPv6 packets to cause kernel memory exhaustion...

CVE-2024-47502

HIGH CVSS 7.5 Oct 11, 2024

An unauthenticated network attacker can cause a denial of service (DoS) on Juniper Junos OS Evolved by exploiting a resource exhaustion vulnerability in the kernel. The vulnerability occurs when termi...

CVE-2024-47499

HIGH CVSS 7.5 Oct 11, 2024

An unauthenticated attacker can cause denial of service by sending a specially crafted BGP update with a malformed AS PATH attribute to Juniper devices running vulnerable Junos OS versions with BMP co...

CVE-2024-47490

HIGH CVSS 8.2 Oct 11, 2024

An unauthenticated attacker can send specific MPLS packets to Juniper ACX 7000 Series devices running vulnerable Junos OS Evolved versions, causing the Packet Forwarding Engine to improperly forward p...

CVE-2024-39548

HIGH CVSS 7.5 Jul 11, 2024

An unauthenticated attacker can send network traffic to Juniper Junos OS Evolved devices to cause uncontrolled memory consumption in the aftmand process, leading to a denial of service. The affected p...

CVE-2024-39542

HIGH CVSS 7.5 Jul 11, 2024

An unauthenticated network attacker can cause denial-of-service on affected Juniper devices by sending specific traffic that crashes critical packet processing components. This affects Juniper MX, ACX...

CVE-2024-39531

HIGH CVSS 7.5 Jul 11, 2024

An improper handling of values vulnerability in Juniper's Packet Forwarding Engine allows unauthenticated network attackers to cause denial-of-service. When DDoS bandwidth/burst parameters are configu...

CVE-2024-39522

HIGH CVSS 7.8 Jul 11, 2024

This vulnerability allows local authenticated users with low privileges on Juniper Junos OS Evolved to escalate to root privileges by executing specific CLI commands with crafted parameters. It affect...

CVE-2024-39524

HIGH CVSS 7.8 Jul 11, 2024

This CVE describes a local privilege escalation vulnerability in Juniper Junos OS Evolved where authenticated low-privilege users can execute specific CLI commands with crafted parameters to gain root...

CVE-2024-39520

HIGH CVSS 7.8 Jul 11, 2024

This CVE describes a local privilege escalation vulnerability in Juniper Networks Junos OS Evolved. An authenticated attacker with low privileges can execute specific CLI commands with crafted paramet...

CVE-2024-39562

HIGH CVSS 7.5 Jul 10, 2024

A resource management vulnerability in xinetd on Juniper Junos OS Evolved allows unauthenticated attackers to cause denial of service by sending high rates of SSH connections. When exploited, xinetd c...

CVE-2024-39555

HIGH CVSS 7.5 Jul 10, 2024

This vulnerability allows remote attackers to cause denial of service by sending specially crafted BGP update messages to Juniper devices with segment routing enabled. Attackers can reset BGP sessions...

CVE-2024-30382

HIGH CVSS 7.5 Apr 12, 2024

This vulnerability allows network-based attackers to cause a denial of service on Juniper devices by sending malicious routing updates that trigger memory corruption in the routing protocol daemon. On...

CVE-2024-30395

HIGH CVSS 7.5 Apr 12, 2024

An unauthenticated network attacker can cause denial of service by sending a specially crafted BGP update with a malformed tunnel encapsulation TLV, causing the Routing Protocol Daemon (RPD) to crash ...

CVE-2024-21598

HIGH CVSS 7.5 Apr 12, 2024

A network-based attacker can cause denial of service by sending a specially crafted BGP update with a malformed tunnel encapsulation TLV to Juniper devices running vulnerable Junos OS versions. This c...

CVE-2024-21611

HIGH CVSS 7.5 Jan 12, 2024

A memory leak vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated network attackers to cause denial of service. When BGP next hops update during Juniper Flow Monitoring (jf...

CVE-2024-21614

HIGH CVSS 7.5 Jan 12, 2024

An unauthenticated network attacker can crash the Routing Protocol Daemon (RPD) on Juniper Junos OS and Junos OS Evolved by sending a specific Dynamic Rendering query when NETCONF and gRPC are enabled...

CVE-2024-21602

HIGH CVSS 7.5 Jan 12, 2024

A NULL pointer dereference vulnerability in Juniper Junos OS Evolved allows unauthenticated attackers to cause denial of service by sending specific IPv4 UDP packets. When received by the Routing Engi...

CVE-2024-21604

HIGH CVSS 7.5 Jan 12, 2024

An unauthenticated network attacker can cause a complete and persistent system outage on Juniper Junos OS Evolved by sending a high rate of specific valid packets that exhaust kernel connection tracki...

CVE-2023-44185

HIGH CVSS 7.5 Oct 13, 2023

An improper input validation vulnerability in Juniper Networks Junos OS routing protocol daemon (rpd) allows attackers to cause denial of service by sending malformed ISO VPN BGP UPDATE packets. This ...

CVE-2023-44197

HIGH CVSS 7.5 Oct 13, 2023

An out-of-bounds write vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated network attackers to cause denial of service by crashing rpd when processing BGP route updates. T...

CVE-2023-4481

HIGH CVSS 7.5 Sep 1, 2023

An improper input validation vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated attackers to cause denial of service by sending crafted BGP UPDATE messages. This affects b...

CVE-2023-0026

HIGH CVSS 7.5 Jun 21, 2023

An improper input validation vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated attackers to cause BGP session flaps and sustained denial of service by sending specially c...

CVE-2023-28973

HIGH CVSS 7.1 Apr 17, 2023

This CVE allows local authenticated attackers on Juniper Junos OS Evolved systems to execute administrative commands through the 'sysmanctl' shell command, bypassing proper authorization checks. Attac...

CVE-2023-28982

HIGH CVSS 7.5 Apr 17, 2023

This vulnerability allows an unauthenticated network attacker to cause a memory leak in Juniper's routing protocol daemon (rpd) during BGP rib sharding scenarios, leading to eventual denial of service...

CVE-2023-28960

HIGH CVSS 8.2 Apr 17, 2023

This CVE allows a local authenticated low-privileged attacker to copy malicious files into existing Docker containers on Juniper Junos OS Evolved systems. When an administrator later starts the contai...

CVE-2023-28964

HIGH CVSS 7.5 Apr 17, 2023

This vulnerability allows an unauthenticated attacker to crash the routing protocol daemon (RPD) on Juniper devices by sending a malformed BGP flowspec update, causing a denial of service. Continued e...

CVE-2023-28966

HIGH CVSS 7.8 Apr 17, 2023

This vulnerability allows a local attacker with shell access and low privileges to modify system files or execute commands as root due to improper file permissions. It affects Juniper Networks Junos O...

CVE-2022-22212

HIGH CVSS 7.5 Jul 20, 2022

This CVE describes an unauthenticated resource exhaustion vulnerability in Juniper Junos OS Evolved's Packet Forwarding Engine. An attacker can send high rates of specific hostbound traffic to cause a...

CVE-2021-31383

HIGH CVSS 7.5 Oct 19, 2021

A stack-based buffer overflow vulnerability in Juniper's routing protocol daemon (RPD) allows remote unauthenticated attackers to crash the RPD service by sending specially crafted packets in P2MP sce...

CVE-2021-31374

HIGH CVSS 7.5 Oct 19, 2021

This vulnerability allows remote attackers to cause a denial of service on Juniper Networks devices by sending specially crafted BGP UPDATE or KEEPALIVE messages. The routing process daemon (RPD) cras...

CVE-2026-21921

MEDIUM CVSS 6.5 Jan 15, 2026

A Use After Free vulnerability in Juniper's chassis daemon allows authenticated low-privilege attackers to cause denial-of-service by repeatedly subscribing/unsubscribing telemetry collectors. This af...

CVE-2026-21911

MEDIUM CVSS 6.5 Jan 15, 2026

An incorrect calculation vulnerability in Juniper's Layer 2 Control Protocol Daemon (l2cpd) allows unauthenticated network-adjacent attackers to cause denial of service by flapping the management inte...

CVE-2026-21909

MEDIUM CVSS 6.5 Jan 15, 2026

This CVE describes a memory leak vulnerability in Juniper's routing protocol daemon (rpd) that allows an adjacent IS-IS neighbor to send malicious update packets causing memory exhaustion. Continued e...

CVE-2025-59959

MEDIUM CVSS 5.5 Jan 15, 2026

A local untrusted pointer dereference vulnerability in Juniper Junos OS routing protocol daemon allows authenticated low-privilege users to cause denial-of-service by executing specific 'show route' c...

CVE-2025-59961

MEDIUM CVSS 5.5 Jan 15, 2026

A local privilege escalation vulnerability in Juniper's DHCP daemon allows any authenticated user, regardless of privileges, to connect to the management Unix socket and issue administrative commands....

CVE-2025-60011

MEDIUM CVSS 5.8 Jan 15, 2026

An unauthenticated network attacker can send a specific BGP attribute to Juniper Junos devices, causing them to modify it incorrectly before forwarding to peers. This malformed attribute causes peers ...

CVE-2025-60010

MEDIUM CVSS 5.4 Oct 9, 2025

This vulnerability allows authenticated network-based attackers to bypass password expiration policies on Juniper Junos OS and Junos OS Evolved devices. When a RADIUS server rejects a login due to an ...

CVE-2025-59962

MEDIUM CVSS 5.3 Oct 9, 2025

An uninitialized pointer access vulnerability in Juniper's routing protocol daemon (rpd) with BGP sharding enabled allows attackers to cause route resolution churn through IGP route changes, leading t...

CVE-2025-52961

MEDIUM CVSS 6.5 Oct 9, 2025

An unauthenticated adjacent attacker can cause denial-of-service on affected Juniper PTX devices by sending specific valid CFM traffic that spikes CPU to 100% and causes memory leaks, eventually crash...

CVE-2025-59958

MEDIUM CVSS 6.5 Oct 9, 2025

An unauthenticated network attacker can send specially crafted packets to PTX Series routers running vulnerable Junos OS Evolved versions, causing resource exhaustion on the Routing Engine and potenti...

CVE-2025-52988

MEDIUM CVSS 6.7 Jul 11, 2025

A local privilege escalation vulnerability in Juniper Junos OS and Junos OS Evolved allows high-privileged local attackers to execute arbitrary commands as root by crafting malicious arguments to the ...

CVE-2025-52985

MEDIUM CVSS 5.3 Jul 11, 2025

A Juniper Junos OS Evolved firewall filter vulnerability allows unauthenticated network attackers to bypass security restrictions when prefix lists with more than 10 entries are used. This affects fir...

CVE-2025-52958

MEDIUM CVSS 5.3 Jul 11, 2025

A reachable assertion vulnerability in Juniper Junos OS and Junos OS Evolved routing protocol daemon allows adjacent unauthenticated attackers to cause denial of service by crashing rpd during BGP ses...

CVE-2025-52964

MEDIUM CVSS 6.5 Jul 11, 2025

An unauthenticated network attacker can cause a denial of service by sending a specific BGP UPDATE packet to Juniper devices running vulnerable Junos OS versions. This causes the routing protocol daem...

CVE-2025-52949

MEDIUM CVSS 6.5 Jul 11, 2025

A vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a logically adjacent BGP peer to crash the routing protocol daemon (rpd) by sending a specifically malformed BGP packet, causin...

CVE-2025-30653

MEDIUM CVSS 6.5 Apr 9, 2025

An expired pointer dereference vulnerability in Juniper's Routing Protocol Daemon (rpd) allows adjacent attackers to cause denial of service by triggering MPLS LSP flapping. This affects Junos OS and ...

CVE-2025-30655

MEDIUM CVSS 5.5 Apr 9, 2025

A local privilege escalation vulnerability in Juniper Junos OS and Junos OS Evolved allows low-privileged users to cause a denial-of-service by running a specific BGP show command. This affects device...

CVE-2025-30646

MEDIUM CVSS 6.5 Apr 9, 2025

A signed-to-unsigned conversion error in Juniper's Layer 2 Control Protocol daemon (l2cpd) allows an unauthenticated adjacent attacker to cause a denial of service by sending a specifically malformed ...

CVE-2025-21597

MEDIUM CVSS 5.3 Apr 9, 2025

An unauthenticated, logically adjacent BGP peer can cause a denial of service by triggering a crash and restart of the routing protocol daemon (rpd) in Juniper Junos OS and Junos OS Evolved. This occu...

CVE-2025-21593

MEDIUM CVSS 6.5 Jan 9, 2025

An unauthenticated attacker can send malformed BGP UPDATE packets to Juniper devices with SRv6 enabled, causing the routing protocol daemon (rpd) to crash and restart, leading to denial of service. Th...

CVE-2025-21600

MEDIUM CVSS 6.5 Jan 9, 2025

An out-of-bounds read vulnerability in Juniper's routing protocol daemon (rpd) allows unauthenticated, adjacent BGP peers to crash the service by sending malformed BGP packets, causing denial of servi...

CVE-2024-47508

MEDIUM CVSS 6.5 Oct 11, 2024

This CVE describes a resource exhaustion vulnerability in Juniper Junos OS Evolved where authenticated attackers can cause FPC crashes through specific SNMP GET operations or CLI commands. The vulnera...

CVE-2024-47495

MEDIUM CVSS 6.7 Oct 11, 2024

An authorization bypass vulnerability in Juniper Junos OS Evolved allows locally authenticated attackers with shell access to gain full device control when Dual Routing Engines are configured. This af...

CVE-2024-47489

MEDIUM CVSS 5.8 Oct 11, 2024

An unauthenticated attacker can send specific transit protocol traffic to Juniper ACX Series devices running vulnerable Junos OS Evolved versions, causing DDoS protection queue exhaustion. This leads ...

CVE-2024-39544

MEDIUM CVSS 5.0 Oct 11, 2024

A local privilege escalation vulnerability in Juniper Junos OS Evolved allows low-privileged local users to read NETCONF traceoptions files containing sensitive system information. This affects all Ju...

CVE-2024-39553

MEDIUM CVSS 6.5 Jul 11, 2024

An unauthenticated network attacker can crash the msvcsd process on Juniper Junos OS Evolved devices configured with inline jflow, causing temporary denial of service and potential unauthorized access...

CVE-2024-39538

MEDIUM CVSS 6.5 Jul 11, 2024

An unauthenticated adjacent attacker can cause a Denial-of-Service (DoS) on Juniper ACX7000 Series routers by sending specific multicast traffic that triggers a buffer overflow in the PFE management d...

CVE-2024-39536

MEDIUM CVSS 5.3 Jul 11, 2024

A memory leak vulnerability in Juniper's Periodic Packet Management Daemon (ppmd) allows unauthenticated adjacent attackers to cause denial-of-service by exploiting BFD session authentication flaps. T...

CVE-2024-39557

MEDIUM CVSS 6.5 Jul 10, 2024

An unauthenticated adjacent attacker can exploit a memory leak in Juniper's Layer 2 Address Learning Daemon (l2ald) on Junos OS Evolved to cause system memory exhaustion, leading to a crash and denial...

CVE-2024-39559

MEDIUM CVSS 5.9 Jul 10, 2024

This vulnerability allows a network-based attacker to crash Juniper Junos OS Evolved devices by sending a specific TCP packet over an established TCP session with MD5 authentication enabled. Only affe...