Where
-Infinity
0

Juniper JunosJunos OS: EX Series, QFX Series: In a VXLAN scenario when specific control protocol packets are received, memory leaks and eventually no traffic is passed

Risk 40
Severity
7.1
First published (updated )

Juniper JunosJunos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physical interface one of those is not applied

Risk 33
Severity
6.9
First published (updated )

Juniper JunosJunos OS: EX4k Series, QFX5k Series: In an EVPN-VXLAN configuration link flaps cause Inter-VNI traffic drop

Risk 29
Severity
7.1
EPSS
0.02%
First published (updated )

Juniper JunosJunos OS: A specifically crafted 'show chassis' command causes chassisd to crash

Risk 37
Severity
6.8
First published (updated )

Juniper JunosJunos OS: EX4600 Series and QFX5000 Series: An attacker with physical access can open a persistent backdoor

Risk 65
Severity
7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: EX2300, EX3400, EX4000 Series, QFX5k Series: Receipt of a specific DHCP packet causes FPC crash when DHCP Option 82 is enabled

Risk 72
Severity
7.7
First published (updated )

Juniper JunosJunos OS: SRX Series, QFX Series, MX Series and EX Series: Receiving specific HTTPS traffic causes resource exhaustion

Risk 47
Severity
8.7
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4600 Series: Output firewall filter is not applied if certain match criteria are used

Risk 33
Severity
6.9
First published (updated )

Juniper JunosJunos OS: J-Web: An unauthenticated, network-based attacker can perform XPATH injection attack against a device.

Risk 77
Severity
7.7
First published (updated )

Juniper JunosJunos OS: SRX Series and EX Series: J-Web doesn't sufficiently sanitize input to prevent XSS

Risk 57
Severity
8.8
EPSS
0.05%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information

Risk 31
Severity
7.5
EPSS
0.09%
First published (updated )

Juniper JunosJunos OS: EX4100, EX4400, EX4600, QFX5000 Series: A high rate of specific ICMP traffic will cause the PFE to hang

Risk 31
Severity
7.5
EPSS
0.05%
First published (updated )

Juniper JunosJunos OS: QFX5000 Series, EX2300, EX3400, EX4100, EX4400 and EX4600: Packet flooding will occur when IGMP traffic is sent to an isolated VLAN

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4000 Series: Denial of Service (DoS) on a large scale VLAN due to PFE hogging

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series, EX4600 Series: In a VxLAN scenario an adjacent attacker within the VxLAN sending genuine packets may cause a DMA memory leak to occur.

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload and download arbitrary files

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJuniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJunos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable

Risk 99
Severity
9.8
First published (updated )

Juniper JunosJuniper Junos OS EX Series PHP External Variable Modification Vulnerability

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJuniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability

Risk 65
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: QFX5k Series, EX46xx Series: MAC limiting feature stops working after PFE restart or device reboot

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: EX4300-MP, EX4600, QFX5000 Series: In VxLAN scenarios specific packets processed cause a memory leak leading to a PFE crash

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: SRX and EX Series: Local privilege escalation flaw in "download" functionality

Risk 69
Severity
7.8
First published (updated )

Juniper JunosJunos OS: EX4600 Series and QFX5000 Series: Receipt of specific traffic will lead to an fxpc process crash followed by an FPC reboot

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: QFX5100/QFX5110/QFX5120/QFX5200/QFX5210/EX4600/EX4650 Series: When storm control profiling is enabled and a device is under an active storm, a Heap-based Buffer Overflow in the PFE will cause a device to hang.

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: QFX5000 Series, EX4600: Device may run out of memory, causing traffic loss, upon receipt of specific IPv6 packets

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4600 Series: Control traffic might be dropped if a high rate of specific multicast traffic is received

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4600 Series: Enhanced storm control might not work leading to partial Denial of Service

Risk 27
Severity
5.3
First published (updated )

Juniper JunosJunos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4600 Series: Continuous traffic destined to a device configured with MC-LAG leading to nodes losing their control connection which can impact traffic

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203