Juniper Networks has released a comprehensive set of security patches addressing nearly 220 vulnerabilities across its Junos OS, Junos Space, and Security Director products, with a particular focus on nine critical flaws in Junos Space. Among the most severe issues is CVE-2025-59978, a cross-site scripting (XSS) vulnerability in Junos Space that allows attackers to inject malicious scripts into web pages, which are then executed with administrative privileges when viewed by other users. This could enable attackers to gain full control of the system, manipulate configurations, or exfiltrate sensitive data. Another critical flaw, CVE-2025-59974, affects Junos Space Security Director and also involves persistent XSS, enabling attackers to store and execute malicious scripts in the context of other users’ browsers. CVE-2025-59975 describes an uncontrolled resource consumption vulnerability in the HTTP daemon of Junos Space, where an attacker can flood the device with API calls, exhausting system resources and causing a denial of service that blocks both WebUI and CLI management access until a manual reboot is performed. CVE-2025-59968 highlights a missing authorization vulnerability in Junos Space Security Director, allowing unauthenticated attackers to read or modify metadata via the web interface, potentially resulting in managed SRX Series devices permitting unauthorized network traffic and bypassing security policies. Additionally, CVE-2025-11198 in Security Director Policy Enforcer exposes an unrestricted API that could let unauthenticated attackers upload and deploy malicious vSRX images to VMware NSX servers, provided a trusted user initiates deployment, thereby compromising the integrity of virtualized network security appliances. The vulnerabilities affect various versions of Junos Space and Security Director, with patches provided in Junos Space 24.1R4 Patch V1 and other specified updates. Juniper has stated that, as of the time of disclosure, there is no evidence of these vulnerabilities being exploited in the wild. The company strongly recommends that all users apply the latest patches to mitigate the risk of exploitation. The technical nature of these flaws, particularly those affecting administrative and management interfaces, underscores the potential for significant impact, including unauthorized access, denial of service, and compromise of network security controls. The breadth of the vulnerabilities, ranging from XSS to missing authorization and resource exhaustion, highlights the importance of comprehensive patch management and regular security reviews for organizations relying on Juniper’s network management solutions. The patches address not only the critical vulnerabilities but also a wide array of other issues, reflecting Juniper’s ongoing efforts to enhance the security posture of its products. Organizations are urged to review the affected product versions and ensure timely deployment of the recommended updates. Failure to patch could leave critical network infrastructure exposed to remote exploitation, data breaches, and operational disruptions. The coordinated disclosure and patch release demonstrate the importance of vendor transparency and proactive security practices in the face of evolving threats. Security teams should also consider reviewing access controls and monitoring for unusual activity on management interfaces as an additional precaution. The vulnerabilities serve as a reminder of the risks inherent in complex network management platforms and the necessity of maintaining up-to-date defenses.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
Public reporting and CVE listings disclosed multiple vulnerabilities in Junos Space products, including persistent XSS, insufficient authorization in Security Director, a DoS in the Junos Space HTTP daemon, and an unauthenticated API flaw that could let attackers deploy malicious vSRX images to VMware NSX. Security Affairs reported that Juniper had patched nine critical flaws in Junos Space.
Juniper Networks issued patches for a set of high-severity flaws affecting Junos Space, Junos Space Security Director, and Security Director Policy Enforcer. Fixed versions referenced include Junos Space 22.2R1 Patch V3 and 23.1R1 Patch V3, and Security Director Policy Enforcer 23.1R1 Hotpatch v3.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
5 references tracked. Mallory keeps watching after this page renders.
securityaffairs.com
Open sourcecvefeed.io
Open sourcecvefeed.io
Open sourcecvefeed.io
Open sourcecvefeed.io
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.