9.1

CVSS4.0

CVE-2026-33771 - CTP OS: Configuring password requirements does not work which permits the use of weak passwords

A Weak Password Requirements vulnerability in the password management function of Juniper Networks CTP OS might allow an unauthenticated, network-based attacker to exploit weak passwords of local accounts and potentially take full control of the device. The password management menu enables the adm…

📅 Published: April 9, 2026, 9:33 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

7

CVSS4.0

CVE-2025-13914 - Apstra: SSH host key validation vulnerability for managed devices

A Key Exchange without Entity Authentication vulnerability in the SSH implementation of Juniper Networks Apstra allows a unauthenticated, MITM attacker to impersonate managed devices. Due to insufficient SSH host key validation an attacker can perform a machine-in-the-middle attack on the SSH co…

📅 Published: April 9, 2026, 9:32 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

7.1

CVSS4.0

CVE-2026-33797 - Junos OS and Junos OS Evolved: An attacker sending a specific genuine BGP packet causes a BGP reset

An Improper Input Validation vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent attacker, sending a specific genuine BGP packet in an already established BGP session to reset only that session causing a Denial of Service (DoS). An attacker repeatedl…

📅 Published: April 9, 2026, 9:31 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

8.3

CVSS4.0

CVE-2026-33779 - Junos OS: SRX Series: Insufficient certificate verification for device to SD cloud communication

An Improper Following of a Certificate's Chain of Trust vulnerability in J-Web of Juniper Networks Junos OS on SRX Series allows a PITM to intercept the communication of the device and get access to confidential information and potentially modify it. When an SRX device is provisioned to connect to…

📅 Published: April 9, 2026, 9:30 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

8.7

CVSS4.0

CVE-2026-5982 - D-Link DIR-605L POST Request formAdvNetwork buffer overflow

A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file /goform/formAdvNetwork of the component POST Request Handler. Performing a manipulation of the argument curTime results in buffer overflow. Remote exploitation of the attack is p…

📅 Published: April 9, 2026, 9:30 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

7.1

CVSS4.0

CVE-2026-33775 - Junos OS: MX Series: Mismatch between configured and received packet types causes memory leak in bb…

A Missing Release of Memory after Effective Lifetime vulnerability in the BroadBand Edge subscriber management daemon (bbe-smgd) of Juniper Networks Junos OS on MX Series allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). If the authentication packet-type option is co…

📅 Published: April 9, 2026, 9:30 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

5.3

CVSS3.1

CVE-2026-40151 - PraisonAI Affected by Unauthenticated Information Disclosure of Agent Instructions via /api/agents …

PraisonAI is a multi-agent teams system. Prior to 4.5.128, the AgentOS deployment platform exposes a GET /api/agents endpoint that returns agent names, roles, and the first 100 characters of agent system instructions to any unauthenticated caller. The AgentOS FastAPI application has no authenticati…

📅 Published: April 9, 2026, 9:29 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

8.7

CVSS4.0

CVE-2026-33782 - Junos OS: MX Series: In specific DHCPv6 scenarios jdhcpd memory increases continuously with subscri…

A Missing Release of Memory after Effective Lifetime vulnerability in the DHCP daemon (jdhcpd) of Juniper Networks Junos OS on MX Series, allows an adjacent, unauthenticated attacker to cause a memory leak, that will eventually cause a complete Denial-of-Service (DoS). In a DHCPv6 over PPPoE, or D…

📅 Published: April 9, 2026, 9:29 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

7.1

CVSS4.0

CVE-2026-33780 - Junos OS and Junos OS Evolved: In an EVPN-MPLS scenario churn of ESI routes causes a memory leak in…

A Missing Release of Memory after Effective Lifetime vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a memory leak ultimately leading to a Denial of Service (DoS). In an EVPN-MPLS…

📅 Published: April 9, 2026, 9:29 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.

6.9

CVSS4.0

CVE-2026-33773 - Junos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physi…

An Incorrect Initialization of Resource vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on specific EX Series and QFX Series device allows an unauthenticated, network-based attacker to cause an integrity impact to downstream networks. When the same family inet or i…

📅 Published: April 9, 2026, 9:28 p.m. 🔄 Last Modified: April 13, 2026, 3:02 p.m.
Total resulsts: 344111
Page 48 of 34,412
« previous page » next page
Filters