Juniper Security Vulnerabilities (CVEs)
Track 219 security vulnerabilities affecting Juniper products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
An unauthenticated network attacker can send crafted TCP traffic to Juniper Junos OS routing engines to cause CPU-based denial of service in the rpd-s...
Oct 11, 2024This CVE allows local low-privileged users on Juniper SRX Series devices to access protected files containing sensitive information through crafted CL...
Oct 11, 2024An unauthenticated attacker can send specific H.323 packets to Juniper SRX/MX Series devices, causing uncontrolled resource consumption that leads to ...
Jul 11, 2024An unauthenticated network attacker can crash the msvcsd process on Juniper Junos OS Evolved devices configured with inline jflow, causing temporary d...
Jul 11, 2024An unauthenticated adjacent attacker can cause a memory leak in the rtlogd process on Juniper MX Series routers with SPC3 line cards by triggering rep...
Jul 11, 2024An unauthenticated attacker can send network traffic to Juniper Junos OS Evolved devices to cause uncontrolled memory consumption in the aftmand proce...
Jul 11, 2024An unauthenticated network attacker can cause denial-of-service on affected Juniper devices by sending specific traffic that crashes critical packet p...
Jul 11, 2024An unauthenticated attacker can cause a denial of service by sending specially crafted IPsec negotiation packets to Juniper devices running vulnerable...
Jul 11, 2024An unauthenticated adjacent attacker can cause a Denial-of-Service (DoS) on Juniper ACX7000 Series routers by sending specific multicast traffic that ...
Jul 11, 2024An unauthenticated attacker can cause a denial-of-service by sending specific valid TCP traffic to affected Juniper devices, triggering a Packet Forwa...
Jul 11, 2024A memory leak vulnerability in Juniper's Periodic Packet Management Daemon (ppmd) allows unauthenticated adjacent attackers to cause denial-of-service...
Jul 11, 2024An improper handling of values vulnerability in Juniper's Packet Forwarding Engine allows unauthenticated network attackers to cause denial-of-service...
Jul 11, 2024An unimplemented feature vulnerability in Juniper Junos OS on QFX5000 and EX4600 series switches allows network-based attackers to bypass intended fil...
Jul 11, 2024This CVE describes a format string vulnerability in Juniper SRX Series firewalls that allows unauthenticated attackers to cause denial-of-service by c...
Jul 11, 2024This vulnerability allows local authenticated users with low privileges on Juniper Junos OS Evolved to escalate to root privileges by executing specif...
Jul 11, 2024This CVE describes a local privilege escalation vulnerability in Juniper Junos OS Evolved where authenticated low-privilege users can execute specific...
Jul 11, 2024This CVE describes a local privilege escalation vulnerability in Juniper Networks Junos OS Evolved. An authenticated attacker with low privileges can ...
Jul 11, 2024This vulnerability allows attackers to bypass TCP packet filtering on Juniper SRX firewalls by sending TCP packets with SYN/FIN or SYN/RST flags when ...
Jul 10, 2024A resource management vulnerability in xinetd on Juniper Junos OS Evolved allows unauthenticated attackers to cause denial of service by sending high ...
Jul 10, 2024An unauthenticated adjacent attacker can exploit a memory leak in Juniper's Layer 2 Address Learning Daemon (l2ald) on Junos OS Evolved to cause syste...
Jul 10, 2024This vulnerability allows a network-based attacker to crash Juniper Junos OS Evolved devices by sending a specific TCP packet over an established TCP ...
Jul 10, 2024An unauthenticated adjacent attacker can cause denial of service by sending high volumes of specific Layer 2 packets in EVPN/VXLAN scenarios, causing ...
Jul 10, 2024A heap-based buffer overflow vulnerability in Juniper Networks Junos OS telemetry sensor process (sensord) causes memory leaks when specific telemetry...
Jul 10, 2024This vulnerability allows remote attackers to cause denial of service by sending specially crafted BGP update messages to Juniper devices with segment...
Jul 10, 2024A local attacker with CLI access can crash the 802.1X authentication daemon on vulnerable Juniper Junos OS devices by running a specific operational c...
Jul 10, 2024A local privilege escalation vulnerability in Juniper Junos OS Evolved allows low-privileged users to crash the Packet Forwarding Engine by running a ...
Jul 10, 2024An unauthenticated network attacker can cause a denial-of-service by sending specific valid traffic to vulnerable Juniper SRX and NFX Series devices. ...
Jul 1, 2024A stack-based buffer overflow vulnerability in Juniper's flowd daemon allows unauthenticated network attackers to cause denial of service by sending s...
Apr 12, 2024An unauthenticated network attacker can cause a denial of service on Juniper SRX4600 devices by sending specific high-volume traffic that triggers a m...
Apr 12, 2024This vulnerability allows network-based attackers to cause a denial of service on Juniper devices by sending malicious routing updates that trigger me...
Apr 12, 2024This vulnerability allows a network-adjacent attacker with root access to a Test Agent Appliance to access sensitive information about downstream devi...
Apr 12, 2024An unauthenticated network attacker can cause denial of service by sending a specially crafted BGP update with a malformed tunnel encapsulation TLV, c...
Apr 12, 2024A network-based attacker can cause denial of service by sending a specially crafted BGP update with a malformed tunnel encapsulation TLV to Juniper de...
Apr 12, 2024This is a cross-site scripting (XSS) vulnerability in Juniper Networks' J-Web interface for SRX and EX Series devices running Junos OS. An attacker ca...
Jan 25, 2024A memory leak vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated network attackers to cause denial of service. When BGP n...
Jan 12, 2024An unauthenticated network attacker can crash the Routing Protocol Daemon (RPD) on Juniper Junos OS and Junos OS Evolved by sending a specific Dynamic...
Jan 12, 2024A NULL pointer dereference vulnerability in Juniper Junos OS Evolved allows unauthenticated attackers to cause denial of service by sending specific I...
Jan 12, 2024An unauthenticated network attacker can cause a complete and persistent system outage on Juniper Junos OS Evolved by sending a high rate of specific v...
Jan 12, 2024An unauthenticated network attacker can cause a denial of service by sending high-rate specific ICMP traffic to Juniper devices with VXLAN configured,...
Jan 12, 2024An unauthenticated attacker can access sensitive reports in Juniper Networks Paragon Active Assurance Control Center without logging in, potentially e...
Jan 12, 2024An out-of-bounds write vulnerability in Juniper J-Web interface allows unauthenticated attackers to execute arbitrary code with root privileges or cau...
Jan 12, 2024An improper input validation vulnerability in Juniper Networks Junos OS routing protocol daemon (rpd) allows attackers to cause denial of service by s...
Oct 13, 2023An unauthenticated network attacker can cause a memory leak leading to denial of service on Juniper QFX5000 Series switches running vulnerable Junos O...
Oct 13, 2023An incorrect default permissions vulnerability in Juniper Networks Junos OS allows an unauthenticated attacker with local access to create a backdoor ...
Oct 13, 2023An out-of-bounds write vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated network attackers to cause denial of service by...
Oct 13, 2023This vulnerability allows network-based attackers to cause denial of service on Juniper MX Series routers by exploiting improper condition checking in...
Oct 13, 2023This vulnerability in Juniper QFX5k devices with storm control enabled allows ICMPv6 packets to bypass security checks, causing packets to be incorrec...
Oct 13, 2023An unauthenticated network attacker can send malformed TCP traffic to cause an infinite loop in the Packet Forwarding Engine on Juniper MX Series rout...
Oct 12, 2023An improper input validation vulnerability in Juniper's Routing Protocol Daemon (rpd) allows unauthenticated attackers to cause denial of service by s...
Sep 1, 2023This vulnerability allows unauthenticated attackers to remotely execute arbitrary code on Juniper EX Series switches and SRX Series firewalls by manip...
Aug 17, 2023Why Monitor Juniper Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 219+ known vulnerabilities affecting Juniper products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Juniper packages in under 60 seconds. No agents required - completely agentless scanning that works across Juniper deployments.
Free vulnerability database: Access detailed information about every Juniper CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Juniper CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions