Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Junos Space — Vulnerabilities & Security Advisories 49

All 49 CVE vulnerabilities found in Junos Space, with AI-generated Chinese analysis, references, and POCs.

This page catalogs known weaknesses for the Junos Space product within the Juniper Networks vendor ecosystem, specifically categorized under common vulnerability classes. It aggregates data on security flaws affecting this network management platform, covering reports and advisories from early 2016 through to the most recent disclosures in late 2023. The collected information includes various types of defects such as cross-site scripting, privilege escalation, and injection vulnerabilities that have been identified by security researchers, vendors, and automated scanners. Here, you can track Juniper Networks' advisory history regarding Junos Space to understand how quickly patches were issued for critical issues. You can also examine the lifecycle of specific weakness types to see how they evolved or were mitigated across different releases of the software. Additionally, this resource allows you to look up the complete vulnerability history of the product, providing a comprehensive view of its security posture over time. This enables security professionals to assess risk exposure, compare findings against industry standards, and identify trends in software defects. By organizing these entries by vendor and product, the page serves as a central reference point for analyzing the attack surface of Junos Space. Users can filter results by severity or publication date to focus on the most relevant threats for their specific environment or research needs.

Vendor: Juniper Networks

CVE IDTitleCVSSSeverityPublished
CVE-2026-21904 Junos Space: ilpFilter field on nLegacy.jsp is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2026-04-09
CVE-2026-21907 Junos Space: TLS/SSL server supports use of static key ciphers (ssl-static-key-ciphers) CWE-327 5.9 Medium2026-01-15
CVE-2025-60009 Junos Space: CLI Configlet page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-60002 Junos Space: Template Definitions page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-60001 Junos Space: Create Quick Template page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-60000 Junos Space: Generate Report page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59999 Junos Space: API Access Profiles page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59998 Junos Space: Archive Logs screen is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59997 Junos Space: Fields in the CLI Configlets are vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59996 Junos Space: Configuration View page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59995 Junos Space: Template creation through Definition is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59994 Junos Space: Quick Template page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59993 Junos Space: Space Node Setting fields are vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59992 Junos Space: Secure Console page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59991 Junos Space: Device Management pages are vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59990 Junos Space: Template creation pages are vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59989 Junos Space: Device Discovery page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59988 Junos Space: Generate Report page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59987 Junos Space: The arbitrary device search field is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59986 Junos Space: Input fields in Model Devices are vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59985 Junos Space: Purging Policy field is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59984 Junos Space: Global Search is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59983 Junos Space: Template Definition page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59982 Junos Space: Dashboard Search field is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59981 Junos Space: Device Template Definition page is vulnerable to reflected cross-site script injection CWE-79 6.1 Medium2025-10-09
CVE-2025-59978 Junos Space: Stored cross-site scripting vulnerability in web application CWE-79 9.0 Critical2025-10-09
CVE-2025-59976 Junos Space: Arbitrary file download vulnerability in web interface CWE-552 6.5 Medium2025-10-09
CVE-2025-59975 Junos Space: Flooding device with inbound API calls leads to WebUI and CLI management access DoS CWE-400 7.5 High2025-10-09
CVE-2024-39563 Junos Space: Remote Command Execution (RCE) vulnerability in web application CWE-77 7.3 High2024-10-11
CVE-2021-0220 Junos Space: Shared secrets stored in recoverable format and directly exposed through the UI CWE-257 6.8 Medium2021-01-15

All 49 known CVE vulnerabilities affecting Junos Space with full Chinese analysis, references, and POCs where available.