Juniper Security Vulnerabilities (CVEs)

Track 219 security vulnerabilities affecting Juniper products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

9 Critical
135 High
75 Medium
🔔 Get Alerts for Juniper
CVE-2026-21918 7.5

A double free vulnerability in Juniper's flow processing daemon (flowd) allows unauthenticated attackers to cause denial-of-service by sending a speci...

Jan 15, 2026
CVE-2026-21920 7.5

An unauthenticated attacker can send specially crafted DNS requests to Juniper SRX Series devices running vulnerable Junos OS versions, causing the fl...

Jan 15, 2026
CVE-2026-21921 6.5

A Use After Free vulnerability in Juniper's chassis daemon allows authenticated low-privilege attackers to cause denial-of-service by repeatedly subsc...

Jan 15, 2026
CVE-2026-21911 6.5

An incorrect calculation vulnerability in Juniper's Layer 2 Control Protocol Daemon (l2cpd) allows unauthenticated network-adjacent attackers to cause...

Jan 15, 2026
CVE-2026-21913 7.5

An unauthenticated attacker can cause a complete denial-of-service on vulnerable Juniper EX4000 switches by sending high volumes of traffic to the dev...

Jan 15, 2026
CVE-2026-21914 7.5

An improper locking vulnerability in Juniper SRX Series GTP plugin allows unauthenticated attackers to cause denial-of-service by sending malformed GT...

Jan 15, 2026
CVE-2026-21917 7.5

An unauthenticated attacker can cause a denial-of-service on Juniper SRX Series firewalls by sending specially crafted SSL packets to devices with UTM...

Jan 15, 2026
CVE-2026-21912 5.5

A local Time-of-check Time-of-use race condition vulnerability in Juniper Junos OS on MX10k Series allows low-privileged users to cause line card cras...

Jan 15, 2026
CVE-2026-21906 7.5

An unauthenticated attacker can crash the packet forwarding engine on vulnerable Juniper SRX Series devices by sending a specific ICMP packet through ...

Jan 15, 2026
CVE-2026-21907 5.9

This vulnerability allows attackers to decrypt TLS/SSL traffic by exploiting the use of static key ciphers in Juniper Junos Space servers. It affects ...

Jan 15, 2026
CVE-2026-21908 7.1

A use-after-free vulnerability in Juniper's 802.1X authentication daemon (dot1xd) allows authenticated, network-adjacent attackers to crash the daemon...

Jan 15, 2026
CVE-2026-21909 6.5

This CVE describes a memory leak vulnerability in Juniper's routing protocol daemon (rpd) that allows an adjacent IS-IS neighbor to send malicious upd...

Jan 15, 2026
CVE-2026-21910 6.5

An unauthenticated network-adjacent attacker can cause denial of service by flapping an interface in EVPN-VXLAN configurations on affected Juniper dev...

Jan 15, 2026
CVE-2026-0203 6.5

An unauthenticated attacker on an adjacent network can send a specially crafted malformed ICMPv4 packet to vulnerable Juniper Junos OS devices, causin...

Jan 15, 2026
CVE-2026-21903 6.5

A stack-based buffer overflow vulnerability in Juniper Junos OS Packet Forwarding Engine allows authenticated low-privilege attackers to cause denial-...

Jan 15, 2026
CVE-2026-21905 7.5

An unauthenticated attacker can send specially crafted SIP messages over TCP to trigger an infinite loop in Juniper's SIP ALG, crashing critical proce...

Jan 15, 2026
CVE-2025-59959 5.5

A local untrusted pointer dereference vulnerability in Juniper Junos OS routing protocol daemon allows authenticated low-privilege users to cause deni...

Jan 15, 2026
CVE-2025-59960 7.4

A vulnerability in Juniper's DHCP service allows a DHCP client in one subnet to exhaust address pools in other subnets, causing Denial of Service on d...

Jan 15, 2026
CVE-2025-59961 5.5

A local privilege escalation vulnerability in Juniper's DHCP daemon allows any authenticated user, regardless of privileges, to connect to the managem...

Jan 15, 2026
CVE-2025-60003 7.5

A buffer over-read vulnerability in Juniper's routing protocol daemon (rpd) allows unauthenticated attackers to cause denial-of-service by sending spe...

Jan 15, 2026
CVE-2025-60007 5.5

A local attacker with low privileges can cause a denial-of-service on Juniper Junos OS devices by executing a specially crafted 'show chassis' command...

Jan 15, 2026
CVE-2025-60011 5.8

An unauthenticated network attacker can send a specific BGP attribute to Juniper Junos devices, causing them to modify it incorrectly before forwardin...

Jan 15, 2026
CVE-2025-52987 6.1

A clickjacking vulnerability in Juniper Networks Paragon Automation web portal allows attackers to embed the interface in malicious frames and trick u...

Jan 15, 2026
CVE-2025-60009 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the CLI Configlet page...

Oct 9, 2025
CVE-2025-60010 5.4

This vulnerability allows authenticated network-based attackers to bypass password expiration policies on Juniper Junos OS and Junos OS Evolved device...

Oct 9, 2025
CVE-2025-60000 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Generate Report pa...

Oct 9, 2025
CVE-2025-60001 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Generate Report pa...

Oct 9, 2025
CVE-2025-60002 6.1

This cross-site scripting vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Template Definitions pag...

Oct 9, 2025
CVE-2025-60004 7.5

An unauthenticated network attacker can cause a denial-of-service by sending a specific BGP EVPN update message to Juniper Junos OS and Junos OS Evolv...

Oct 9, 2025
CVE-2025-59995 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Quick Template pag...

Oct 9, 2025
CVE-2025-59996 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Configuration View...

Oct 9, 2025
CVE-2025-59997 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into CLI Configlets pages. ...

Oct 9, 2025
CVE-2025-59998 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Archive Log screen...

Oct 9, 2025
CVE-2025-59999 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the API Access Profile...

Oct 9, 2025
CVE-2025-59990 6.1

This Cross-site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into template creation page...

Oct 9, 2025
CVE-2025-59991 6.1

This is a cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space management interface that allows attackers to inject malicious scri...

Oct 9, 2025
CVE-2025-59992 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Secure Console pag...

Oct 9, 2025
CVE-2025-59993 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into Space Node Setting fie...

Oct 9, 2025
CVE-2025-59994 6.1

This cross-site scripting vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Quick Template page. Whe...

Oct 9, 2025
CVE-2025-59984 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Global Search feat...

Oct 9, 2025
CVE-2025-59985 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Purging Policy pag...

Oct 9, 2025
CVE-2025-59986 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into input fields. When adm...

Oct 9, 2025
CVE-2025-59987 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the device search fiel...

Oct 9, 2025
CVE-2025-59988 6.1

This cross-site scripting vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Generate Report page. Wh...

Oct 9, 2025
CVE-2025-59989 6.1

This cross-site scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Device Discovery p...

Oct 9, 2025
CVE-2025-59978 9.0

This stored XSS vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into web pages that execute with administra...

Oct 9, 2025
CVE-2025-59981 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Device Template De...

Oct 9, 2025
CVE-2025-59982 6.1

This cross-site scripting vulnerability in Juniper Junos Space allows attackers to inject malicious scripts into the dashboard search field. When anot...

Oct 9, 2025
CVE-2025-59983 6.1

This Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos Space allows attackers to inject malicious scripts into the Template Definitio...

Oct 9, 2025
CVE-2025-59975 7.5

An unauthenticated attacker can flood Juniper Junos Space with HTTP API requests, consuming all file handles and causing a complete denial of service....

Oct 9, 2025

Why Monitor Juniper Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 219+ known vulnerabilities affecting Juniper products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Juniper packages in under 60 seconds. No agents required - completely agentless scanning that works across Juniper deployments.

Free vulnerability database: Access detailed information about every Juniper CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Juniper CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Juniper CVEs Free