#VU116936 Missing authorization in Junos Space Security Director - CVE-2025-59968
Published: October 13, 2025
Junos Space Security Director
Juniper Networks, Inc.
Description
The vulnerability allows a remote attacker to gain access to otherwise restricted functionality.
The vulnerability exists due to missing authorization checks in web interface. A remote non-authenticated attacker can tamper with metadata and permit network traffic that should otherwise be blocked by policy leading to a bypass of intended security controls.