Known vulnerabilities in Junos OS Evolved 24.2R1-EVO

Version: 24.2R1-EVO
Software CPE: cpe:2.3:o:juniper_networks:junos_os_evolved:*:*:*:*:*:*:*:*
Total vulnerabilities: 13
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS Evolved version 24.2R1-EVO Junos OS Evolved 24.2R1-EVO is affected by 13 vulnerabilities: 1 critical, 1 high, 5 medium, 6 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130704 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-21919
CWE-362 Low
No
No
23.4R2-S5-EVO, 24.2R2-S1-EVO, 24.4R1-S3-EVO, 24.4R2-EVO, 25.2R1-EVO 08.05.2026 SB2026050828
#VU130702 - Command injection
CVE-2026-33791
CWE-77 Low
No
No
22.4R3-S8-EVO, 23.2R2-S5-EVO, 23.4R2-S7-EVO, 24.2R2-S2-EVO, 24.4R2-EVO, 25.2R1-S1-EVO, 25.2R2-EVO, 25.4R1-EVO 08.05.2026 SB2026050826
#VU130697 - Execution with Unnecessary Privileges
CVE-2026-33793
CWE-250 Low
No
No
22.4R3-S7-EVO, 23.2R2-S4-EVO, 23.4R2-S6-EVO, 24.2R2-EVO, 24.4R1-S1-EVO, 24.4R2-EVO, 25.2R1-EVO 08.05.2026 SB2026050824
#VU130696 - Missing Authorization
CVE-2026-33776
CWE-862 Low
No
No
23.2R2-S6-EVO, 23.4R2-S6-EVO, 24.2R2-S4-EVO, 24.4R2-S1-EVO, 25.2R2-EVO, 25.4R1-EVO 08.05.2026 SB2026050820
#VU130694 - Missing release of memory after effective lifetime
CVE-2026-33780
CWE-401 Medium
No
No
22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S4-EVO, 24.2R2-EVO, 24.4R1-EVO 08.05.2026 SB2026050819
#VU130689 - Stack-based buffer overflow
CVE-2025-59969
CWE-121 Low
No
No
22.4R3-S8-EVO, 23.2R2-S5-EVO, 23.4R2-EVO, 24.2R2-EVO, 24.4R2-EVO, 25.2R1-EVO 08.05.2026 SB2026050813
#VU102533 - Out-of-bounds read
CVE-2025-21600
CWE-125 Medium
No
No
21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S2-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 10.01.2025 SB2025011032
#VU102532 - Improper Check or Handling of Exceptional Conditions
CVE-2025-21602
CWE-703 Medium
No
No
21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S3-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 10.01.2025 SB2025011027
#VU102530 - Out-of-bounds read
CVE-2025-21598
CWE-125 Medium
No
No
21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S2-EVO, 23.4R2-S1-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 10.01.2025 SB2025011026
#VU102493 - Missing Release of Resource after Effective Lifetime
CVE-2025-21599
CWE-772 Medium
No
No
22.4R3-S5-EVO, 23.2R2-S2-EVO, 23.4R2-S2-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 09.01.2025 SB2025010941
#VU93515 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2006-5051
CWE-362 Critical
No
No
24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 01.07.2024 SB2006092801
SB2024071109
SB2024071110
and 5 more
#VU93514 - Exposure of sensitive information to an unauthorized actor
CVE-2024-39894
CWE-200 Low
No
No
24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 01.07.2024 SB2024070144
SB2024070956
SB2024071076
and 7 more
#VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-6387
CWE-362 High
Public exploit available
No
24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO 01.07.2024 SB2024070144
SB2024070145
SB2024070152
and 89 more