Known vulnerabilities in Junos OS

Software: Junos OS
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 660
Public exploits: 27
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Junos OS Junos OS is affected by 660 known vulnerabilities: 4 critical, 55 high, 423 medium, 178 low Critical High Medium Low

Vulnerabilities (660)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU137152 - Out-of-bounds write
CVE-2026-57021
CWE-787 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S4, 24.4R2-S4, 25.2R2, 25.4R1-S1, 25.4R2, 26.2R1 08.07.2026 SB2026070874
#VU137151 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-57030
CWE-362 Medium
No
No
24.2R2-S3, 24.4R2-S1, 25.2R1-S2, 25.2R2, 25.4R1 08.07.2026 SB2026070871
#VU137150 - Out-of-bounds write
CVE-2026-33799
CWE-787 Medium
No
No
21.2R3-S8, 21.4R3-S7, 22.1R3-S6, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2, 23.4R2, 24.2R1 08.07.2026 SB2026070870
#VU137148 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-57031
CWE-754 Medium
No
No
23.2R2-S7, 23.4R2-S7, 24.2R2-S3, 24.4R2-S2, 25.2R2, 25.4R1 08.07.2026 SB2026070868
#VU137147 - Use of Incorrectly-Resolved Name or Reference
CVE-2026-57054
CWE-706 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S5, 24.4R2-S4, 25.2R2-S1, 25.4R1-S2, 25.4R2, 26.2R1 08.07.2026 SB2026070867
#VU137146 - Return of pointer value outside of expected range
CVE-2026-57025
CWE-466 Low
No
No
23.2R2-S7, 23.4R2-S7, 24.2R2, 24.4R1-S2, 24.4R2, 25.2R1 08.07.2026 SB2026070860
#VU137144 - Unchecked Input for Loop Condition
CVE-2026-33800
CWE-606 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S4, 24.4R2-S3, 25.2R2, 25.4R1 08.07.2026 SB2026070858
#VU137143 - Improper Validation of Specified Quantity in Input
CVE-2026-57023
CWE-1284 Medium
No
No
23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R2, 25.4R1 08.07.2026 SB2026070857
#VU137142 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-57020
CWE-754 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S4, 24.4R2-S4 08.07.2026 SB2026070856
#VU137141 - Missing Authorization
CVE-2026-33802
CWE-862 Low
No
No
23.2R2-S6, 23.4R2-S8, 24.2R2-S4, 24.4R2-S3, 25.2R2, 25.4R1-S1, 25.4R2, 26.2R1 08.07.2026 SB2026070855
#VU137140 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-57022
CWE-754 Medium
No
No
22.4R3-S8, 23.2R2-S4, 23.4R2-S5, 24.2R2, 24.4R1 08.07.2026 SB2026070854
#VU137139 - Improper Validation of Syntactic Correctness of Input
CVE-2026-57026
CWE-1286 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S5, 24.4R2-S4, 25.2R2, 25.4R1-S2, 25.4R2, 26.2R1 08.07.2026 SB2026070853
#VU137138 - NULL Pointer Dereference
CVE-2026-21901
CWE-476 Low
No
No
22.3R3-S5, 22.4R3-S10, 23.2R2-S7, 23.4R2-S8, 24.2R1 08.07.2026 SB2026070852
#VU137137 - Improper Handling of Undefined Parameters
CVE-2026-57032
CWE-236 Medium
No
No
23.2R2-S7, 23.4R2-S8, 24.2R2-S5, 24.4R2, 25.2R1 08.07.2026 SB2026070851
#VU137135 - Use of Multiple Resources with Duplicate Identifier
CVE-2026-57024
CWE-694 Medium
No
No
23.2R2-S7, 23.4R2-S6, 24.2R2-S3, 24.4R2-S4, 25.2R1-S1, 25.2R2, 25.4R1 08.07.2026 SB2026070849
#VU137133 - Improper Validation of Specified Quantity in Input
CVE-2026-57019
CWE-1284 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S4, 25.2R2, 25.4R1 08.07.2026 SB2026070847
#VU137132 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33801
CWE-754 Medium
No
No
25.2R2, 25.4R1 08.07.2026 SB2026070846
#VU137131 - Missing release of memory after effective lifetime
CVE-2026-57027
CWE-401 Medium
No
No
23.2R2-S7, 23.4R2-S7, 24.2R2-S4, 24.4R2, 25.2R1 08.07.2026 SB2026070845
#VU130705 - Improper Initialization
CVE-2026-33773
CWE-665 Medium
No
No
23.4R2-S7 08.05.2026 SB2026050829
#VU65671 - Out-of-bounds write
CVE-2022-24805
CWE-787 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 19 more


Showing elements 1 - 20 out of 660