Known vulnerabilities in Junos OS - page 3

Software: Junos OS
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 660
Public exploits: 27
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Junos OS Junos OS is affected by 660 known vulnerabilities: 4 critical, 55 high, 423 medium, 178 low Critical High Medium Low

Vulnerabilities (660)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU121699 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-21905
CWE-835 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S3, 24.4R2-S1, 25.2R1-S1, 25.2R2, 25.4R1 20.01.2026 SB2026012061
#VU121698 - Improper Validation of Syntactic Correctness of Input
CVE-2026-21917
CWE-1286 Medium
No
No
23.2R2-S5, 23.4R2-S5, 24.2R2-S2, 24.4R1-S3, 24.4R2, 25.2R1 20.01.2026 SB2026012060
#VU121697 - Improper Locking
CVE-2026-21914
CWE-667 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S3, 24.4R2-S2, 25.2R1-S1, 25.2R2, 25.4R1 20.01.2026 SB2026012059
#VU121696 - Improper Handling of Exceptional Conditions
CVE-2026-0203
CWE-755 Medium
No
No
20.2R3-S10, 21.2R3-S9, 21.4R3-S10, 22.2R3-S7, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 20.01.2026 SB2026012058
#VU121684 - NULL Pointer Dereference
CVE-2025-60007
CWE-476 Low
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R1 20.01.2026 SB2026012024
#VU121683 - Unchecked Return Value
CVE-2026-21920
CWE-252 Medium
No
No
23.4R2-S5, 24.2R2-S1, 24.4R2, 24.4R2-S1, 25.2R1 20.01.2026 SB2026012023
#VU121682 - Untrusted Pointer Dereference
CVE-2025-59959
CWE-822 Low
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S5, 24.2R2-S2, 24.4R2, 25.2R1 20.01.2026 SB2026012022
#VU121681 - Incorrect Permission Assignment for Critical Resource
CVE-2025-59961
CWE-732 Low
No
No
21.2R3-S10, 22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R1-S1, 25.2R2, 25.4R1 20.01.2026 SB2026012021
#VU121680 - Use After Free
CVE-2026-21921
CWE-416 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2, 24.2R1 20.01.2026 SB2026012020
#VU121679 - Missing release of memory after effective lifetime
CVE-2026-21909
CWE-401 Medium
No
No
23.2R2, 23.4R1-S2, 23.4R2, 24.1R2, 24.2R1 20.01.2026 SB2026012019
#VU121677 - Incorrect Initialization of Resource
CVE-2026-21913
CWE-1419 Medium
No
No
24.4R2, 25.2R1-S2, 25.2R2, 25.4R1 20.01.2026 SB2026012014
#VU121676 - Stack-based buffer overflow
CVE-2026-21903
CWE-121 Medium
No
No
22.4R3-S7, 23.2R2-S4, 23.4R2, 24.2R1 20.01.2026 SB2026012013
#VU121668 - Improper Check for Unusual or Exceptional Conditions
CVE-2025-60011
CWE-754 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R1 19.01.2026 SB2026011998
#VU121667 - Improper Check for Unusual or Exceptional Conditions
CVE-2025-59960
CWE-754 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R1-S1, 25.2R2, 25.4R1 19.01.2026 SB2026011997
#VU121664 - Double Free
CVE-2026-21918
CWE-415 Medium
No
No
22.4R3-S7, 23.2R2-S3, 23.4R2-S4, 24.2R2, 24.4R1 19.01.2026 SB2026011989
#VU121663 - Improper Handling of Exceptional Conditions
CVE-2026-21906
CWE-755 Medium
No
No
21.4R3-S12, 22.4R3-S8, 23.2R2-S5, 23.4R2-S5, 24.2R2-S3, 24.4R2-S1, 25.2R1-S1, 25.2R2, 25.4R1 19.01.2026 SB2026011988
#VU121662 - Buffer over-read
CVE-2025-60003
CWE-126 Medium
No
No
22.4R3-S8, 23.2R2-S5, 23.4R2-S6, 24.2R2-S2, 24.4R2, 25.2R1 19.01.2026 SB2026011987
#VU121661 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-21912
CWE-367 Low
No
No
21.2R3-S10, 21.4R3-S9, 22.2R3-S7, 22.4R3-S6, 23.2R2-S2, 23.4R2-S3, 24.2R2, 24.4R1 19.01.2026 SB2026011986
#VU116939 - Origin Validation Error
CVE-2025-59957
CWE-346 Medium
No
No
21.4R3, 22.2R3-S3, 22.3R1 13.10.2025 SB2025101399
#VU116937 - Not Using Password Aging
CVE-2025-60010
CWE-262 Medium
No
No
22.4R3-S8, 23.2R2-S4, 23.4R2-S5, 24.2R2-S1, 24.4R1-S3, 24.4R2, 25.2R1 13.10.2025 SB2025101397


Showing elements 41 - 60 out of 660