VendorsJuniperjunos22.4
Vulnerabilities

Juniper Junos 22.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

178CVEs
CVE-2025-21594
Junos OS: MX Series: In DS-lite and NAT scenario receipt of crafted IPv6 traffic causes port block
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-21601
Junos OS: SRX and EX Series, MX240, MX480, MX960, QFX5120 Series: When web management is enabled for specific services an attacker may cause a CPU spike by sending genuine packets to the device
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30651
Junos OS and Junos OS Evolved: Receipt of a specific ICMPv6 packet causes a memory overrun leading to an rpd crash
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2026-21905
Junos OS: SRX Series, MX Series with MX-SPC3 or MS-MPC: Receipt of multiple specific SIP messages results in flow management process crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2026-21918
Junos OS: SRX and MX Series: When TCP packets occur in a specific sequence flowd crashes
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2024-30397
Junos OS: An invalid certificate causes a Denial of Service in the Internet Key Exchange (IKE) process
Published 2024-04-12 · Modified
8.7EPSS 0.003
CVE-2026-21914
Junos OS: SRX Series: A specifically malformed GTP message will cause an FPC crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.003
CVE-2025-52983
Junos OS: After removing ssh public key authentication root can still log in
Published 2025-07-11 · Analyzed
8.6EPSS 0.006
CVE-2026-33793
Junos OS and Junos OS Evolved: When an unsigned Python op script configuration is present, a local low privileged user can compromise the system
Published 2026-04-09 · Analyzed
8.5EPSS 0.002
CVE-2026-33791
Junos OS and Junos OS Evolved: Execution of crafted CLI commands allows for arbitrary shell injection as root
Published 2026-04-09 · Modified
8.4EPSS 0.007
CVE-2025-52988
Junos OS and Junos OS Evolved: Privilege escalation to root via CLI command 'request system logout'
Published 2025-07-11 · Analyzed
8.4EPSS 0.005
CVE-2025-30650
Junos OS: Privileged local user can gain access to a Linux-based FPC as root
Published 2026-04-08 · Analyzed
8.4EPSS 0.001
CVE-2026-33779
Junos OS: SRX Series: Insufficient certificate verification for device to SD cloud communication
Published 2026-04-09 · Analyzed
8.3EPSS 0.002
CVE-2025-21598
Junos OS and Junos OS Evolved: When BGP traceoptions are configured, receipt of malformed BGP packets causes RPD to crash
Published 2025-01-09 · Analyzed
8.2EPSS 0.007
CVE-2024-47491
Junos OS and Junos OS Evolved: Receipt of a specific malformed BGP path attribute leads to an RPD crash
Published 2024-10-11 · Analyzed
8.2EPSS 0.006
CVE-2024-30402
Junos OS and Junos OS Evolved: The l2ald crashes on receiving telemetry messages from a specific subscription
Published 2024-04-12 · Analyzed
8.2EPSS 0.005
CVE-2025-52948
Junos OS: Specific unknown traffic pattern causes FPC and system to crash when packet capturing is enabled
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2025-52984
Junos OS and Junos OS Evolved: When a static route points to a reject next-hop and a gNMI query for this route is processed, RPD crashes
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2024-39554
Junos OS and Junos OS Evolved: BGP multipath incremental calculation is resulting in an rpd crash
Published 2024-07-10 · Analyzed
8.2EPSS 0.004
CVE-2024-47494
Junos OS: Due to a race condition AgentD process causes a memory corruption and FPC reset
Published 2024-10-11 · Analyzed
8.2EPSS 0.004
CVE-2025-52960
Junos OS: SRX Series and MX Series: Receipt of specific SIP packets in a high utilization situation causes a flowd/mspmand crash
Published 2025-10-09 · Analyzed
8.2EPSS 0.003
CVE-2025-30644
Junos OS: EX2300, EX3400, EX4000 Series, QFX5k Series: Receipt of a specific DHCP packet causes FPC crash when DHCP Option 82 is enabled
Published 2025-04-09 · Analyzed
7.7EPSS 0.003
CVE-2023-4481
Junos OS and Junos OS Evolved: A crafted BGP UPDATE message allows a remote attacker to de-peer (reset) BGP sessions (CVE-2023-4481)
Published 2023-08-31 · Modified
7.5EPSS 0.182
CVE-2024-21619
Junos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information
Published 2024-01-25 · Modified
7.5EPSS 0.009
CVE-2023-0026
2023-06: Out-of-Cycle Security Bulletin: Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute
Published 2023-06-21 · Modified
7.5EPSS 0.006
CVE-2023-36832
Junos OS: MX Series: PFE crash upon receipt of specific packet destined to an AMS interface
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-36831
Junos OS: SRX Series: jbuf memory leak when SSL Proxy and UTM Web-Filtering is applied
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2024-21606
Junos OS: SRX Series: When "tcp-encap" is configured and specific packets are received flowd will crash
Published 2024-01-12 · Modified
7.5EPSS 0.006
CVE-2023-36843
Junos OS: SRX Series: The PFE will crash on receiving malformed SSL traffic when Sky ATP is enabled
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2024-21595
Junos OS: EX4100, EX4400, EX4600, QFX5000 Series: A high rate of specific ICMP traffic will cause the PFE to hang
Published 2024-01-12 · Modified
7.5EPSS 0.005
CVE-2023-44186
Junos OS and Junos OS Evolved: RPD crash when attempting to send a very long AS PATH to a non-4-byte-AS capable BGP neighbor
Published 2023-10-11 · Modified
7.5EPSS 0.005
CVE-2024-21616
Junos OS: MX Series and SRX Series: Processing of a specific SIP packet causes NAT IP allocation to fail
Published 2024-01-12 · Modified
7.5EPSS 0.005
CVE-2023-36841
Junos OS: MX Series: Receipt of malformed TCP traffic will cause a Denial of Service
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44175
Junos OS and Junos OS Evolved: Receipt of a specific genuine PIM packet causes RPD crash
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44191
Junos OS: QFX5000 Series and EX4000 Series: Denial of Service (DoS) on a large scale VLAN due to PFE hogging
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44192
Junos OS: QFX5000 Series: DMA memory leak is observed when specific DHCP packets are transmitted over pseudo-VTEP
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2024-21586
Junos OS: SRX Series and NFX Series: Specific valid traffic leads to a PFE crash
Published 2024-07-01 · Analyzed
7.5EPSS 0.005
CVE-2025-59960
Junos OS and Junos OS Evolved: DHCP Option 82 messages from clients being passed unmodified to the DHCP server
Published 2026-01-15 · Analyzed
7.4EPSS 0.003
CVE-2025-30648
Junos OS and Junos OS Evolved: Receipt of a specifically malformed DHCP packet causes jdhcpd process to crash
Published 2025-04-09 · Analyzed
7.4EPSS 0.002
CVE-2026-21903
Junos OS: Subscribing to telemetry sensors at scale causes all FPCs to crash
Published 2026-01-15 · Analyzed
7.1EPSS 0.004
← Prev2 / 5Next →