VendorsJuniperjunosall versions
Vulnerabilities

Juniper Junos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

791CVEs
CVE-2022-22238
Junos OS and Junos OS Evolved: The rpd process will crash when a malformed incoming RESV message is processed
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2024-21599
Junos OS: MX Series: MPC3E memory leak with PTP configuration
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2023-36842
Junos OS: jdhcpd will hang on receiving a specific DHCP packet
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2024-21617
Junos OS: BGP flap on NSR-enabled devices causes memory leak
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2023-22392
Junos OS: PTX Series and QFX10000 Series: Received flow-routes which aren't installed as the hardware doesn't support them, lead to an FPC heap memory leak
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2024-21587
Junos OS: MX Series: Memory leak in bbe-smgd process if BFD liveness detection for DHCP subscribers is enabled
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2024-21613
Junos OS and Junos OS Evolved: A link flap causes patroot memory leak which leads to rpd crash
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2023-44203
Junos OS: QFX5000 Series, EX2300, EX3400, EX4100, EX4400 and EX4600: Packet flooding will occur when IGMP traffic is sent to an isolated VLAN
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2023-36839
Junos OS and Junos OS Evolved: An l2cpd crash will occur when specific LLDP packets are received
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2023-44204
Junos OS and Junos OS Evolved: The rpd will crash upon receiving a malformed BGP UPDATE message
Published 2023-10-12 · Analyzed
6.5EPSS 0.003
CVE-2021-0289
Junos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted
Published 2021-07-15 · Modified
6.5EPSS 0.003
CVE-2025-30653
Junos OS and Junos OS Evolved: LSP flap in a specific MPLS scenario leads to rpd crash
Published 2025-04-09 · Analyzed
6.5EPSS 0.002
CVE-2024-30391
Junos OS: MX Series with SPC3, and SRX Series: When IPsec authentication is configured with "hmac-sha-384" and "hmac-sha-512" no authentication of traffic is performed
Published 2024-04-12 · Analyzed
6.3EPSS 0.004
CVE-2020-1669
Junos OS: NFX350: Password hashes stored in world-readable format
Published 2020-10-16 · Modified
6.3EPSS 0.003
CVE-2024-39532
Junos OS and Junos OS Evolved: Confidential information in logs can be accessed by another user
Published 2024-07-11 · Analyzed
6.3EPSS 0.002
CVE-2019-11358
jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype.
Published 2019-04-19 · Modified
6.11 PoCEPSS 0.872
CVE-2016-7103
Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.
Published 2017-03-15 · Modified
6.1EPSS 0.226
CVE-2020-7656
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.
Published 2020-05-19 · Modified
6.11 PoCEPSS 0.063
CVE-2022-22242
Junos OS: Cross-site Scripting (XSS) vulnerability in J-Web
Published 2022-10-18 · Modified
6.1EPSS 0.028
CVE-2021-0295
Junos OS: QFX10K Series: Denial of Service (DoS) upon receipt of DVMRP packets received on multi-homing ESI in VXLAN.
Published 2021-07-15 · Modified
6.1EPSS 0.011
CVE-2014-6385
Juniper Junos 11.4 before 11.4R13, 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D30, 12.1X47 before 12.1X47-D15, 12.2 before 12.2R9, 12.3R7 before 12.3R7-S1, 12.3 before 12.3R8, 13.1 before 13.1R5, 13.2 before 13.2R6, 13.3 before 13.3R4, 14.1 before 14.1R2, and 14.2 before 14.2R1 allows remote attackers to cause a denial of service (kernel crash and restart) via a crafted fragmented OSPFv3 packet with an IPsec Authentication Header (AH).
Published 2015-01-16 · Modified
6.1EPSS 0.006
CVE-2024-39528
Junos OS and Junos OS Evolved: Concurrent deletion of a routing-instance and receipt of an SNMP request cause an RPD crash
Published 2024-07-11 · Modified
6.0EPSS 0.003
CVE-2025-21597
Junos OS and Junos OS Evolved: When BGP rib-sharding and update-threading are configured and a peer flaps, an rpd core is observed
Published 2025-04-09 · Analyzed
6.0EPSS 0.002
CVE-2024-39536
Junos OS and Junos OS Evolved: Flaps of BFD sessions with authentication cause a ppmd memory leak
Published 2024-07-11 · Analyzed
6.0EPSS 0.002
CVE-2024-39539
Junos OS: MX Series: Continuous subscriber logins will lead to a memory leak and eventually an FPC crash
Published 2024-07-11 · Analyzed
6.0EPSS 0.002
CVE-2025-52958
Junos OS and Junos OS Evolved: When route validation is enabled, BGP connection establishment failure causes RPD crash
Published 2025-07-11 · Analyzed
6.0EPSS 0.002
CVE-2025-59962
Junos OS and Junos OS Evolved: With BGP sharding enabled, change in indirect next-hop can cause RPD crash
Published 2025-10-09 · Analyzed
6.0EPSS 0.002
CVE-2018-0034
Junos OS: A malicious crafted IPv6 DHCP packet may cause the JDHCPD daemon to core
Published 2018-07-11 · Modified
5.9EPSS 0.021
CVE-2016-1262
Juniper Junos OS before 12.1X46-D45, 12.1X47 before 12.1X47-D30, 12.1X48 before 12.3X48-D20, and 15.1X49 before 15.1X49-D30 on SRX series devices, when the Real Time Streaming Protocol Application Layer Gateway (RTSP ALG) is enabled, allow remote attackers to cause a denial of service (flowd crash) via a crafted RTSP packet.
Published 2016-01-15 · Modified
5.9EPSS 0.015
CVE-2016-1257
The Routing Engine in Juniper Junos OS 13.2R5 through 13.2R8, 13.3R1 before 13.3R8, 13.3R7 before 13.3R7-S3, 14.1R1 before 14.1R6, 14.1R3 before 14.1R3-S9, 14.1R4 before 14.1R4-S7, 14.1X51 before 14.1X51-D65, 14.1X53 before 14.1X53-D12, 14.1X53 before 14.1X53-D28, 14.1X53 before 4.1X53-D35, 14.2R1 before 14.2R5, 14.2R3 before 14.2R3-S4, 14.2R4 before 14.2R4-S1, 15.1 before 15.1R3, 15.1F2 before 15.1F2-S2, and 15.1X49 before 15.1X49-D40, when LDP is enabled, allows remote attackers to cause a denial of service (RPD routing process crash) via a crafted LDP packet.
Published 2016-01-15 · Modified
5.9EPSS 0.015
CVE-2017-10618
Junos: RPD core due to BGP UPDATE with malformed optional transitive attributes
Published 2017-10-13 · Modified
5.9EPSS 0.015
CVE-2018-0019
Junos: Denial of service vulnerability in SNMP MIB-II subagent daemon (mib2d).
Published 2018-04-11 · Modified
5.9EPSS 0.015
CVE-2018-0009
SRX Series: Firewall bypass vulnerability when UUID with leading zeros is configured.
Published 2018-01-10 · Modified
5.9EPSS 0.013
CVE-2018-0031
Junos OS: Receipt of specially crafted UDP packets over MPLS may bypass stateless IP firewall rules
Published 2018-07-11 · Modified
5.9EPSS 0.012
CVE-2017-2346
MS-MPC or MS-MIC crash when passing large fragmented traffic through an ALG
Published 2017-07-14 · Modified
5.9EPSS 0.011
CVE-2018-0060
Junos OS: Invalid IP/mask learned from DHCP server might cause device control daemon (dcd) process crash
Published 2018-10-10 · Modified
5.9EPSS 0.011
CVE-2021-0263
Junos OS: PTX Series: Denial of Service in packet processing due to heavy route churn when J-Flow sampling is enabled
Published 2021-04-22 · Modified
5.9EPSS 0.009
CVE-2022-22169
Junos OS and Junos OS Evolved: OSPFv3 session might go into INIT state upon receipt of multiple crafted packets from a trusted neighbor device.
Published 2022-01-19 · Modified
5.9EPSS 0.008
CVE-2021-31386
Junos OS: When using J-Web with HTTP an attacker may retrieve encryption keys via Person-in-the-Middle attacks.
Published 2021-10-19 · Modified
5.9EPSS 0.007
CVE-2022-22213
Junos OS and Junos OS Evolved: Denial of Service (DoS) vulnerability in RPD upon receipt of specific BGP update
Published 2022-07-20 · Modified
5.9EPSS 0.007
← Prev17 / 20Next →