Skip to content

Products › Brands

Brand

Juniper: actively exploited vulnerabilities

8 vulnerabilities in Juniper products (Junos OS, ScreenOS (NetScreen)) are in CISA’s catalog of exploited vulnerabilities. Last added: October 2, 2025.

The brand’s general security advisories page, not the advisory for a specific vulnerability (address checked September 28, 2026).

By category

Add just one Juniper category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

Follow a single Juniper product (Junos OS, ScreenOS (NetScreen)…) rather than the whole brand.

  • Junos OS7 vulnerabilities, Switches and routers
  • ScreenOS (NetScreen)1 vulnerability, Firewalls and VPNs

Name used by CISA: Juniper. Product families: indicative classification by this site.

Patch first

In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this Juniper list.

  1. Rank 1

    Juniper ScreenOS (NetScreen)CVE-2015-7755

    Juniper ScreenOS Improper Authentication Vulnerability

    CVE from 2015, added in 2025

    CVSS severity 9.8critical

    Added Oct 2, 2025

  2. Rank 2

    Juniper Junos OSCVE-2023-36845

    Juniper Junos OS EX Series and SRX Series PHP External Variable Modification Vulnerability

    CVSS severity 9.8critical

    Added Nov 13, 2023

  3. Rank 3

    Juniper Junos OSCVE-2020-1631

    Juniper Junos OS Path Traversal Vulnerability

    CVE from 2020, added in 2022

    CVSS severity 9.8critical

    Added Mar 25, 2022

  4. Rank 4

    Juniper Junos OSCVE-2023-36844

    Juniper Junos OS EX Series PHP External Variable Modification Vulnerability

    CVSS severity 5.3medium

    Added Nov 13, 2023

  5. Rank 5

    Juniper Junos OSCVE-2023-36846

    Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

    CVSS severity 5.3medium

    Added Nov 13, 2023

  6. Rank 6

    Juniper Junos OSCVE-2023-36847

    Juniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability

    CVSS severity 5.3medium

    Added Nov 13, 2023

  7. Rank 7

    Juniper Junos OSCVE-2023-36851

    Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

    CVSS severity 5.3medium

    Added Nov 13, 2023

  8. Rank 8

    Juniper Junos OSCVE-2025-21590

    Juniper Junos OS Improper Isolation or Compartmentalization Vulnerability

    CVSS severity 4.4medium

    Added Mar 13, 2025

Follow and verify

Get new Juniper vulnerabilities: RSS feed (add it to Outlook, Teams, Slack or your feed reader).

Indicative classification, based on the vendor and product names given by CISA. How products are classified.