Known vulnerabilities in Junos OS 23.4R2-S3

Software: Junos OS
Version: 23.4R2-S3
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 30
Public exploits: 1
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 23.4R2-S3 Junos OS 23.4R2-S3 is affected by 30 vulnerabilities: 1 critical, 2 high, 18 medium, 9 low Critical High Medium Low

Vulnerabilities (30)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130705 - Improper Initialization
CVE-2026-33773
CWE-665 Medium
No
No
23.4R2-S7 08.05.2026 SB2026050829
#VU130704 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-21919
CWE-362 Low
No
No
23.4R2-S4, 24.2R2-S1, 24.4R1-S3, 24.4R2, 25.2R1 08.05.2026 SB2026050828
#VU130702 - Command injection
CVE-2026-33791
CWE-77 Low
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S7, 24.2R2-S2, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050826
#VU130701 - Missing Authentication for Critical Function
CVE-2025-30650
CWE-306 Low
No
No
22.4R3-S8, 23.2R2-S6, 23.4R2-S6, 24.2R2-S3, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050825
#VU130700 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33787
CWE-754 Low
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S2, 24.4R2, 25.2R1-S1, 25.2R2, 25.4R1 08.05.2026 SB2026050822
#VU130699 - Missing release of memory after effective lifetime
CVE-2026-33775
CWE-401 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050821
#VU130698 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33790
CWE-754 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050823
#VU130697 - Execution with Unnecessary Privileges
CVE-2026-33793
CWE-250 Low
No
No
22.4R3-S7, 23.2R2-S4, 23.4R2-S6, 24.2R1-S2, 24.2R2, 24.4R1-S2, 24.4R2, 25.2R1 08.05.2026 SB2026050824
#VU130696 - Missing Authorization
CVE-2026-33776
CWE-862 Low
No
No
22.4R3-S8, 23.2R2-S6, 23.4R2-S6, 24.2R2-S4, 24.4R2-S1, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050820
#VU130694 - Missing release of memory after effective lifetime
CVE-2026-33780
CWE-401 Medium
No
No
22.4R3-S5, 23.2R2-S3, 23.4R2-S4, 24.2R2, 24.4R1 08.05.2026 SB2026050819
#VU130691 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33774
CWE-754 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2, 24.4R2, 25.2R1 08.05.2026 SB2026050815
#VU130690 - Improper Following of a Certificate\'s Chain of Trust
CVE-2026-33779
CWE-296 Medium
No
No
22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S2, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050814
#VU130687 - UNIX Symbolic Link (Symlink) Following
CVE-2026-21916
CWE-61 Medium
No
No
23.2R2-S7, 23.4R2-S6, 24.2R2-S3, 24.4R2-S2, 25.2R2 08.05.2026 SB2026050811
#VU125558 - Improper input validation
CVE-2026-33778
CWE-20 Medium
No
No
22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 09.04.2026 SB2026040942
#VU105679 - Permissions, Privileges, and Access Controls
CVE-2025-21590
CWE-264 High
No
Exploited
21.2R3-S9, 21.4R3-S10, 22.2R3-S6, 22.4R3-S6, 23.2R2-S3, 23.4R2-S4, 24.2R1-S2, 24.2R2, 24.4R1 12.03.2025 SB2025031279
#VU98413 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-47494
CWE-362 Low
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S3, 23.2R2-S2, 23.4R2, 24.2R1 11.10.2024 SB2024101139
#VU98410 - Missing release of memory after effective lifetime
CVE-2024-47493
CWE-401 Medium
No
No
21.2R3-S7, 21.4R3-S6, 22.1R3-S5, 22.2R3-S3, 22.3R3-S2, 22.4R3, 23.2R2, 23.4R1, 23.4R2, 24.1R1 11.10.2024 SB2024101136
#VU98407 - Resource exhaustion
CVE-2024-47497
CWE-400 Medium
No
No
21.4R3-S7, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2-S1, 23.4R1-S2, 23.4R2, 24.2R1 11.10.2024 SB2024101134
#VU98404 - Improper Handling of Exceptional Conditions
CVE-2024-39526
CWE-755 Medium
No
No
21.2R3-S7, 21.4R3-S6, 22.2R3-S3, 22.4R3, 23.2R2, 23.4R2, 24.2R1 11.10.2024 SB2024101131
#VU65671 - Out-of-bounds write
CVE-2022-24805
CWE-787 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 19 more


Showing elements 1 - 20 out of 30