Juniper Networks Product Security Update Advisory (CVE-2026-21902)

Juniper Networks Product Security Update Advisory (CVE-2026-21902)

Overview

 

Juniper Networks has released security updates that address vulnerabilities in its products. users of affected products are advised to update to the latest version.

 

 

Affected Products

 

CVE-2026-21902

 

Junos OS Evolved on PTX Series 25.4 version: 25.4R1-S1-EVO and earlier
Junos OS Evolved on PTX Series 25.4 version: 25.4R2-EVO and earlier

 

 

Resolved Vulnerabilities

 

Remote code execution vulnerability due to improper privilege assignment in the On-Box Anomaly Detection framework in Junos OS Evolved on PTX Series (CVE-2026-21902)

 

 

Vulnerability Patches

 

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest version of Vulnerability Patches.

 

CVE-2026-21902

 

Junos OS Evolved on PTX Series 25.4 version: 25.4R1-S1-EVO and later
Junos OS Evolved on PTX Series 25.4 version: 25.4R2-EVO and later

 

 

references

 

[1] 2026-02 Out-of-Cycle Security Bulletin: Junos OS Evolved: PTX Series: A vulnerability allows an unauthenticated, network-based attacker to execute code as root (CVE-2026-21902)

https://supportportal.juniper.net/s/article/2026-02-Out-of-Cycle-Security-Bulletin-Junos-OS-Evolved-PTX-Series-A-vulnerability-allows-a-unauthenticated-network-based-attacker-to-execute-code-as-root-CVE-2026-21902