Where
-Infinity
0

Juniper JunosJunos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physical interface one of those is not applied

Risk 33
Severity
6.9
First published (updated )

Juniper JunosJunos OS: A specifically crafted 'show chassis' command causes chassisd to crash

Risk 37
Severity
6.8
First published (updated )

Juniper JunosJunos OS: EX2300, EX3400, EX4000 Series, QFX5k Series: Receipt of a specific DHCP packet causes FPC crash when DHCP Option 82 is enabled

Risk 72
Severity
7.7
First published (updated )

Juniper JunosJunos OS: SRX Series, QFX Series, MX Series and EX Series: Receiving specific HTTPS traffic causes resource exhaustion

Risk 47
Severity
8.7
First published (updated )

Juniper JunosJunos OS: J-Web: An unauthenticated, network-based attacker can perform XPATH injection attack against a device.

Risk 77
Severity
7.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: SRX Series and EX Series: J-Web doesn't sufficiently sanitize input to prevent XSS

Risk 57
Severity
8.8
EPSS
0.05%
First published (updated )

Juniper JunosJunos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information

Risk 31
Severity
7.5
EPSS
0.09%
First published (updated )

Juniper JunosJunos OS: QFX5000 Series, EX2300, EX3400, EX4100, EX4400 and EX4600: Packet flooding will occur when IGMP traffic is sent to an isolated VLAN

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: QFX5000 Series and EX4000 Series: Denial of Service (DoS) on a large scale VLAN due to PFE hogging

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload and download arbitrary files

Risk 65
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJuniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJunos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable

Risk 99
Severity
9.8
First published (updated )

Juniper JunosJuniper Junos OS EX Series PHP External Variable Modification Vulnerability

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJuniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability

Risk 65
Severity
5.3
First published (updated )

Juniper JunosJunos OS: EX2300 and EX3400 Series: One of more SFPs might become unavailable when the system is very busy

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: SRX and EX Series: Local privilege escalation flaw in "download" functionality

Risk 69
Severity
7.8
First published (updated )

Juniper JunosJunos OS: EX2300 Series, EX2300-MP Series, EX3400 Series: A slow memory leak due to processing of specific IPv6 packets

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: EX2300 Series, EX3400 Series, and ACX710 might become unresponsive if the out-of-band management port receives a flood of traffic

Risk 44
Severity
7.8
First published (updated )

Juniper JUNOSJunos OS: EX2300, EX3400 and EX4300 Series: An Aggregated Ethernet (AE) interface will go down due to a stream of specific layer 2 frames

Risk 38
Severity
6.5
First published (updated )

Juniper JunosJunos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS: J-Web: Cross-site scripting attack allows an attacker to gain control of another users session.

Risk 79
Severity
9.3
First published (updated )

Juniper JunosJunos OS: Denial of Service vulnerability in J-Web and web based (HTTP/HTTPS) services caused by a high number of specific requests

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: A race condition in the storm control profile may allow an attacker to cause a Denial of Service condition

Risk 42
Severity
7.4
First published (updated )

Juniper JunosJunos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.

Risk 43
Severity
7.4
First published (updated )

Juniper JunosJunos OS: EX Series and QFX Series: Memory leak issue processing specific DHCP packets

Risk 43
Severity
7.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Juniper JunosJunos OS and Junos OS Evolved: Upon receipt of a specific BGP FlowSpec message network traffic may be disrupted.

Risk 73
Severity
10
First published (updated )

Juniper JunosNFX250, NFX350, QFX5K Series, EX2300 Series, EX3400 Series, EX4300 Multigigabit, EX4600 Series: Certain genuine traffic received by the Junos OS device will be discarded instead of forwarded.

Risk 43
Severity
7.5
First published (updated )

Juniper JunosJunos OS: EX and QFX5K Series: Storm Control does not work as expected when Redundant Trunk Group is configured

Risk 49
Severity
8.6
First published (updated )

Juniper JunosJunos OS: jdhcpd process crash when forwarding a malformed DHCP packet.

Risk 27
Severity
5.3
First published (updated )

Juniper JunosJunos OS: EX and QFX Series: Console port authentication bypass vulnerability

Risk 59
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203