VendorsJuniperjunosany version
Vulnerabilities

Juniper Junos any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

278CVEs
CVE-2025-52986
Junos OS and Junos OS Evolved: When RIB sharding is configured each time a show command is executed RPD memory leaks
Published 2025-07-11 · Analyzed
6.8EPSS 0.001
CVE-2026-21912
Junos OS: MX10k Series: 'show system firmware' CLI command may lead to LC480 or LC2101 line card reset
Published 2026-01-15 · Analyzed
6.8EPSS 0.001
CVE-2025-21590
Junos OS: An local attacker with shell access can execute arbitrary code
Published 2025-03-12 · Analyzed
6.7KEVEPSS 0.017
CVE-2016-1267
Race condition in the RPC functionality in Juniper Junos OS before 12.1X44-D55, 12.1X46 before 12.1X46-D40, 12.1X47 before 12.1X47-D25, 12.3 before 12.3R11, 12.3X48 before 12.3X48-D20, 13.2 before 13.2R8, 13.2X51 before 13.2X51-D39, 13.3 before 13.3R7, 14.1 before 14.1R6, 14.1X53 before 14.1X53-D30, 14.2 before 14.2R3-S4, 15.1 before 15.1F2, or 15.1R2, 15.1X49 before 15.1X49-D20, and 16.1 before 16.1R1 allows local users to read, delete, or modify arbitrary files via unspecified vectors.
Published 2016-04-15 · Modified
6.7EPSS 0.002
CVE-2016-1275
Juniper Junos OS before 13.3R9, 14.1R6 before 14.1R6-S1, and 14.1 before 14.1R7, when configured with VPLS routing-instances, allows remote attackers to obtain sensitive mbuf information by injecting a flood of Ethernet frames with IPv6 MAC addresses directly into a connected interface.
Published 2016-09-09 · Modified
6.5EPSS 0.009
CVE-2016-1280
PKId in Juniper Junos OS before 12.1X44-D52, 12.1X46 before 12.1X46-D37, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R12, 12.3X48 before 12.3X48-D20, 13.3 before 13.3R10, 14.1 before 14.1R8, 14.1X53 before 14.1X53-D40, 14.2 before 14.2R7, 15.1 before 15.1R4, 15.1X49 before 15.1X49-D20, 15.1X53 before 15.1X53-D60, and 16.1 before 16.1R1 allow remote attackers to bypass an intended certificate validation mechanism via a self-signed certificate with an Issuer name that matches a valid CA certificate enrolled in Junos.
Published 2016-09-09 · Modified
6.5EPSS 0.007
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2022-22215
Junos OS and Junos OS Evolved: /var/run/<pid>.env files are potentially not deleted during termination of a gRPC connection causing inode exhaustion
Published 2022-07-20 · Modified
6.5EPSS 0.006
CVE-2022-22202
Junos OS: PTX Series: FPCs may restart unexpectedly upon receipt of specific MPLS packets with certain multi-unit interface configurations
Published 2022-07-20 · Modified
6.5EPSS 0.005
CVE-2023-44184
Junos OS and Junos OS Evolved: High CPU load due to specific NETCONF command
Published 2023-10-12 · Analyzed
6.5EPSS 0.005
CVE-2022-22249
Junos OS: MX Series: An FPC crash might be seen due to mac-moves within the same bridge domain
Published 2022-10-18 · Modified
6.5EPSS 0.005
CVE-2021-31362
Junos OS and Junos OS Evolved: An IS-IS adjacency might be taken down if a bad hello PDU is received for an existing adjacency causing a DoS
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31365
Junos OS: EX2300, EX3400 and EX4300 Series: An Aggregated Ethernet (AE) interface will go down due to a stream of specific layer 2 frames
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2022-22168
Junos OS: vMX and MX150: Specific packets might cause a memory leak and eventually an FPC reboot
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22191
Junos OS: EX4300: PFE Denial of Service (DoS) upon receipt of a flood of specific ARP traffic
Published 2022-04-14 · Modified
6.5EPSS 0.004
CVE-2022-22217
Junos OS: QFX10K Series: Denial of Service (DoS) upon receipt of crafted MLD packets on multi-homing ESI in VXLAN
Published 2022-07-20 · Modified
6.5EPSS 0.003
CVE-2022-22214
Junos OS and Junos OS Evolved: In an MPLS scenario upon receipt of a specific IPv6 packet an FPC will crash
Published 2022-07-20 · Modified
6.5EPSS 0.003
CVE-2023-1697
Junos OS: QFX10000 Series, PTX1000 Series: The dcpfe process will crash when a malformed ethernet frame is received
Published 2023-04-17 · Modified
6.5EPSS 0.003
CVE-2022-22224
Junos OS and Junos OS Evolved: PPMD goes into infinite loop upon receipt of malformed OSPF TLV
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2023-22405
Junos OS: QFX5k Series, EX46xx Series: MAC limiting feature stops working after PFE restart or device reboot
Published 2023-01-12 · Modified
6.5EPSS 0.003
CVE-2023-22406
Junos OS and Junos OS Evolved: A memory leak which will ultimately lead to an rpd crash will be observed when a peer interface flaps continuously in a Segment Routing scenario using OSPF
Published 2023-01-12 · Modified
6.5EPSS 0.003
CVE-2023-22407
Junos OS and Junos OS Evolved: An RPD crash can happen due to an MPLS TE tunnel configuration change on a directly connected router
Published 2023-01-12 · Modified
6.5EPSS 0.003
CVE-2023-28959
Junos OS: QFX10002: PFE wedges and restarts upon receipt of specific malformed packets
Published 2023-04-17 · Modified
6.5EPSS 0.003
CVE-2023-28970
Junos OS: JRR200: Kernel crash upon receipt of a specific packet
Published 2023-04-17 · Modified
6.5EPSS 0.003
CVE-2023-22395
Junos OS: In an MPLS scenario the processing of specific packets to the device causes a buffer leak and ultimately a loss of connectivity
Published 2023-01-12 · Modified
6.5EPSS 0.003
CVE-2022-22238
Junos OS and Junos OS Evolved: The rpd process will crash when a malformed incoming RESV message is processed
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2023-36842
Junos OS: jdhcpd will hang on receiving a specific DHCP packet
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2023-22392
Junos OS: PTX Series and QFX10000 Series: Received flow-routes which aren't installed as the hardware doesn't support them, lead to an FPC heap memory leak
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2023-44203
Junos OS: QFX5000 Series, EX2300, EX3400, EX4100, EX4400 and EX4600: Packet flooding will occur when IGMP traffic is sent to an isolated VLAN
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2023-36839
Junos OS and Junos OS Evolved: An l2cpd crash will occur when specific LLDP packets are received
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2021-0289
Junos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted
Published 2021-07-15 · Modified
6.5EPSS 0.003
CVE-2025-30653
Junos OS and Junos OS Evolved: LSP flap in a specific MPLS scenario leads to rpd crash
Published 2025-04-09 · Analyzed
6.5EPSS 0.002
CVE-2024-30391
Junos OS: MX Series with SPC3, and SRX Series: When IPsec authentication is configured with "hmac-sha-384" and "hmac-sha-512" no authentication of traffic is performed
Published 2024-04-12 · Analyzed
6.3EPSS 0.004
CVE-2024-39532
Junos OS and Junos OS Evolved: Confidential information in logs can be accessed by another user
Published 2024-07-11 · Analyzed
6.3EPSS 0.002
CVE-2022-22242
Junos OS: Cross-site Scripting (XSS) vulnerability in J-Web
Published 2022-10-18 · Modified
6.1EPSS 0.028
CVE-2024-39528
Junos OS and Junos OS Evolved: Concurrent deletion of a routing-instance and receipt of an SNMP request cause an RPD crash
Published 2024-07-11 · Modified
6.0EPSS 0.003
CVE-2025-21597
Junos OS and Junos OS Evolved: When BGP rib-sharding and update-threading are configured and a peer flaps, an rpd core is observed
Published 2025-04-09 · Analyzed
6.0EPSS 0.002
CVE-2024-39536
Junos OS and Junos OS Evolved: Flaps of BFD sessions with authentication cause a ppmd memory leak
Published 2024-07-11 · Analyzed
6.0EPSS 0.002
CVE-2024-39539
Junos OS: MX Series: Continuous subscriber logins will lead to a memory leak and eventually an FPC crash
Published 2024-07-11 · Analyzed
6.0EPSS 0.002
CVE-2025-52958
Junos OS and Junos OS Evolved: When route validation is enabled, BGP connection establishment failure causes RPD crash
Published 2025-07-11 · Analyzed
6.0EPSS 0.002
← Prev6 / 7Next →