Juniper Networks has released security updates addressing a critical vulnerability affecting Junos OS Evolved on PTX Series routers. Users and administrators of affected products are advised to update to the latest version immediately.
Juniper Networks has released security updates addressing a critical vulnerability (CVE-2026-21902) affecting Junos OS Evolved on PTX Series routers. The vulnerability has a Common Vulnerability Scoring System (CVSS v3.1) score of 9.8 out of 10.
Successful exploitation of this vulnerability could allow an attacker with network access to the exposed service to execute arbitrary code with root privileges and take full control of the affected device without authentication.
This vulnerability affects Juniper Networks Junos OS Evolved on PTX Series routers version 25.4 prior to 25.4R1-S1-EVO and 25.4R2-EVO.
Older releases may also be affected; however, the vendor does not provide security assessments or patches for versions that have reached end-of-engineering or end-of-life (EoL).
Users and administrators of affected products are advised to update to the latest version immediately.
If immediate patching is not possible, Juniper Networks recommends restricting vulnerable endpoints access to trusted networks only using firewall filters or Access Control Lists (ACLs).
Alternatively, administrators may disable the vulnerable service entirely using the following command:
request pfe anomalies disable
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
