<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T20:47:12.754568+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408</id>
    <title>certfr-2026-avi-0408 — De multiples vulnérabilités ont été découvertes dans les produits Juniper Networks. Certaines d'entre elles permettent…</title>
    <updated>2026-10-03T20:47:12.816959+00:00</updated>
    <content>certfr-2026-avi-0408</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-291071</id>
    <title>EUVD-2026-291071</title>
    <updated>2026-10-03T20:47:12.817020+00:00</updated>
    <content>EUVD-2026-291071</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-291071"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33785</id>
    <title>fkie_cve-2026-33785</title>
    <updated>2026-10-03T20:47:12.817042+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to execute specific commands which will lead to a complete compromise of managed devices.</p>
<p>Any user logged in, without requiring specific privileges, can issue 'request csds' CLI operational commands. These commands are only meant to be executed by high privileged or users designated for Juniper Device Manager (JDM) / Connected Security Distributed Services (CSDS) operations as they will impact all aspects of the devices managed via the respective MX.</p>
<p>This issue affects Junos OS on MX Series:</p>
<p>*  24.4 releases before 24.4R2-S3, 
  *  25.2 releases before 25.2R2.</p>
<p>This issue does not affect Junos OS releases before 24.4.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33785"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m5fr-cwvv-7qff</id>
    <title>GHSA-m5fr-cwvv-7qff</title>
    <updated>2026-10-03T20:47:12.817099+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to execute specific commands which will lead to a complete compromise of managed devices.</p>
<p>Any user logged in, without requiring specific privileges, can issue 'request csds' CLI operational commands. These commands are only meant to be executed by high privileged or users designated for Juniper Device Manager (JDM) / Connected Security Distributed Services (CSDS) operations as they will impact all aspects of the devices managed via the respective MX.</p>
<p>This issue affects Junos OS on MX Series:</p>
<p>*  24.4 releases before 24.4R2-S3, 
  *  25.2 releases before 25.2R2.</p>
<p>This issue does not affect Junos OS releases before 24.4.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m5fr-cwvv-7qff"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</id>
    <title>WID-SEC-W-2026-1022 — Juniper Patchday April 2026: Mehrere Schwachstellen</title>
    <updated>2026-10-03T20:47:12.817134+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022"/>
  </entry>
</feed>
