Known vulnerabilities in Junos OS 24.2R1-S1

Software: Junos OS
Version: 24.2R1-S1
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 44
Public exploits: 7
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 24.2R1-S1 Junos OS 24.2R1-S1 is affected by 44 vulnerabilities: 2 critical, 8 high, 24 medium, 10 low Critical High Medium Low

Vulnerabilities (44)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130704 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-21919
CWE-362 Low
No
No
23.4R2-S4, 24.2R2-S1, 24.4R1-S3, 24.4R2, 25.2R1 08.05.2026 SB2026050828
#VU130702 - Command injection
CVE-2026-33791
CWE-77 Low
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S7, 24.2R2-S2, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050826
#VU130701 - Missing Authentication for Critical Function
CVE-2025-30650
CWE-306 Low
No
No
22.4R3-S8, 23.2R2-S6, 23.4R2-S6, 24.2R2-S3, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050825
#VU130700 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33787
CWE-754 Low
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S2, 24.4R2, 25.2R1-S1, 25.2R2, 25.4R1 08.05.2026 SB2026050822
#VU130699 - Missing release of memory after effective lifetime
CVE-2026-33775
CWE-401 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R2, 25.4R1 08.05.2026 SB2026050821
#VU130698 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33790
CWE-754 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050823
#VU130697 - Execution with Unnecessary Privileges
CVE-2026-33793
CWE-250 Low
No
No
22.4R3-S7, 23.2R2-S4, 23.4R2-S6, 24.2R1-S2, 24.2R2, 24.4R1-S2, 24.4R2, 25.2R1 08.05.2026 SB2026050824
#VU130696 - Missing Authorization
CVE-2026-33776
CWE-862 Low
No
No
22.4R3-S8, 23.2R2-S6, 23.4R2-S6, 24.2R2-S4, 24.4R2-S1, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050820
#VU130694 - Missing release of memory after effective lifetime
CVE-2026-33780
CWE-401 Medium
No
No
22.4R3-S5, 23.2R2-S3, 23.4R2-S4, 24.2R2, 24.4R1 08.05.2026 SB2026050819
#VU130691 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33774
CWE-754 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2, 24.4R2, 25.2R1 08.05.2026 SB2026050815
#VU130690 - Improper Following of a Certificate\'s Chain of Trust
CVE-2026-33779
CWE-296 Medium
No
No
22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S2, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050814
#VU130687 - UNIX Symbolic Link (Symlink) Following
CVE-2026-21916
CWE-61 Medium
No
No
23.2R2-S7, 23.4R2-S6, 24.2R2-S3, 24.4R2-S2, 25.2R2 08.05.2026 SB2026050811
#VU125558 - Improper input validation
CVE-2026-33778
CWE-20 Medium
No
No
22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 09.04.2026 SB2026040942
#VU105679 - Permissions, Privileges, and Access Controls
CVE-2025-21590
CWE-264 High
No
Exploited
21.2R3-S9, 21.4R3-S10, 22.2R3-S6, 22.4R3-S6, 23.2R2-S3, 23.4R2-S4, 24.2R1-S2, 24.2R2, 24.4R1 12.03.2025 SB2025031279
#VU102533 - Out-of-bounds read
CVE-2025-21600
CWE-125 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011032
#VU102532 - Improper Check or Handling of Exceptional Conditions
CVE-2025-21602
CWE-703 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011027
#VU93515 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2006-5051
CWE-362 Critical
No
No
24.2R1-S2, 24.2R2, 24.4R1 01.07.2024 SB2006092801
SB2024071109
SB2024071110
and 5 more
#VU93514 - Exposure of sensitive information to an unauthorized actor
CVE-2024-39894
CWE-200 Low
No
No
24.2R1-S2, 24.2R2, 24.4R1 01.07.2024 SB2024070144
SB2024070956
SB2024071076
and 7 more
#VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-6387
CWE-362 High
Public exploit available
No
24.2R1-S2, 24.2R2, 24.4R1 01.07.2024 SB2024070144
SB2024070145
SB2024070152
and 89 more
#VU65671 - Out-of-bounds write
CVE-2022-24805
CWE-787 Medium
No
No
23.2R2-S6, 23.4R2-S7, 24.2R2-S4, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 19 more


Showing elements 1 - 20 out of 44