CVE-2026-21907

A Use of a Broken or Risky Cryptographic Algorithm vulnerability in the TLS/SSL server of Juniper Networks Junos Space allows the use of static key ciphers (ssl-static-key-ciphers), reducing the confidentiality of on-path traffic communicated across the connection. These ciphers also do not support Perfect Forward Secrecy (PFS), affecting the long-term confidentiality of encrypted communications.This issue affects all versions of Junos Space before 24.1R5.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:24.1:r1:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:24.1:r2:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:24.1:r3:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:24.1:r4:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-15 21:16

Updated : 2026-01-23 20:02


NVD link : CVE-2026-21907

Mitre link : CVE-2026-21907

CVE.ORG link : CVE-2026-21907


JSON object : View

Products Affected

juniper

  • junos_space
CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm