Juniper disclosed two security vulnerabilities affecting Junos OS and Junos OS Evolved, including a flaw in EX Series and QFX Series switches where applying the same egress filter to both an IRB and a physical interface can cause one of the filters not to be enforced. The issue, tracked as CVE-2026-33773, could undermine intended network policy enforcement by leaving traffic insufficiently filtered on affected deployments.
Juniper also published an advisory for CVE-2026-33793, warning that when an unsigned Python op script configuration is present, a local low-privileged user may be able to compromise the system. The vulnerability affects Junos platforms that permit that configuration state and creates a path for local privilege escalation or broader device compromise, prompting administrators to review exposed systems and apply vendor fixes or mitigations from Juniper's security bulletins.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
Juniper published a security bulletin for CVE-2026-33793, describing a vulnerability in Junos OS and Junos OS Evolved where the presence of an unsigned Python op script configuration could allow a local low-privileged user to compromise the system.
Juniper published a security bulletin for CVE-2026-33773, describing an issue in Junos OS EX Series and QFX Series where, if the same egress filter is configured on both an IRB and a physical interface, one of the filters is not applied.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.