Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Juniper Project

First CVE: Aug 22, 2001Active for: 25 yearsTotal CVEs: 1,111

The Juniper Project maintains a narrowly scoped vulnerability footprint centered on its Juniper product, where the durable signal reflects resource-exhaustion and recursion-depth weaknesses typical of parsing and algorithm-processing logic. Treat this as a compact vendor profile; current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
1,111
Total CVEs
Bottom 1%
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
0.7%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Juniper Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 22, 2001
24 years ago
Most Recent CVE
Jul 9, 2026
15 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (1111 CVEs).

1,111 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-36845CRITICAL
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to remote
Aug 17, 20239.898YESYES
CVE-2023-36844MEDIUM
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to control certain, importan
Aug 17, 20235.395YESYES
CVE-2022-42889CRITICAL
Apache Commons Text performs variable interpolation, allowing properties to be dynamically evaluated and expanded. The standard format for interpolation is "${prefix:name}", where
Oct 13, 20229.895NOYES
CVE-2015-7755CRITICAL
Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0r15b, 6.3.0r16 before 6.3.0r16b, 6
Dec 19, 20159.894YESYES
CVE-2023-36846MEDIUM
A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to
Aug 17, 20235.393YESNO
CVE-2023-36847MEDIUM
A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to cause limited impact to
Aug 17, 20235.391YESNO
CVE-2009-1185HIGH
udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.
Apr 17, 20097.284NOYES
CVE-2019-11358MEDIUM
jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source ob
Apr 20, 20196.178NOYES
CVE-2008-0960HIGH
SNMPv3 HMAC verification in (1) Net-SNMP 5.2.x before 5.2.4.1, 5.3.x before 5.3.2.1, and 5.4.x before 5.4.1.1; (2) UCD-SNMP; (3) eCos; (4) Juniper Session and Resource Control (SRC
Jun 10, 200810.077NOYES
CVE-2004-0230MEDIUM
TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by
Aug 18, 20045.074NOYES
View all 1,111 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products1,111 CVEs
52%
42%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local148 (13.3%)
Network618 (55.6%)
Unknown140 (12.6%)
Physical11 (1.0%)
Adjacent Network194 (17.5%)
Attack Complexity
Low872 (78.5%)
High99 (8.9%)
Unknown140 (12.6%)
User Interaction
None876 (78.8%)
Unknown140 (12.6%)
Required95 (8.6%)
Privileges Required
Low207 (18.6%)
High23 (2.1%)
None741 (66.7%)
Unknown140 (12.6%)

Exploit Exposure

Signals from CVEs in this vendor scope (1111 CVEs).

CISA KEV
8 CVEs
0.7% of CVEs· Bottom 1%
Metasploit
5 CVEs
0.4% of CVEs· Bottom 1%
Nuclei
4 CVEs
0.4% of CVEs· Bottom 1%
ExploitDB
15 CVEs
1.4% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Juniper Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Juniper Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Juniper Project's Products

View all 11 CNAs →

Top CWEs