Product Affected

These issues affect all versions of Junos Space.
Critical

Problem

Multiple Cross-site Scripting (XSS) vulnerabilities have been resolved in the Juniper Networks Junos Space 24.1R4 release.

These issues affect Juniper Networks Junos Space versions prior to 24.1R4.

Important security issues resolved include:

CVECVSSSummary
CVE-2025-599816.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Device Template Definition page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599826.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the dashboard search field that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599836.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Template Definition page, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599846.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in Global Search that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599856.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in a field on the Purging Policy page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599866.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the input fields in Model Devices that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599876.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the arbitrary device search field that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599886.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Generate Report page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599896.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Device Discovery page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599906.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the template creation pages that, when visited by another user, enable the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599916.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Device Management pages that, when visited by another user, enable the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599926.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Secure Console page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599936.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Space Node Setting fields that, when visited by another user, enable the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599946.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Quick Template page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599956.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Template creation through Definition page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599966.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Configuration View page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599976.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the CLI Configlets pages that, when visited by another user, enable the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599986.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Archive Log screen that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599996.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the API Access Profiles page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-600006.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Generate Report page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-600016.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Create Quick Template page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-600026.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Template Definitions page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-600096.1A Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the CLI Configlet page that, when visited by another user, enables the attacker to execute commands with the target's permissions, including an administrator.
CVE-2025-599789.0A Stored Cross-site Scripting vulnerability in Juniper Networks Junos Space allows an attacker to store script tags directly in web pages that, when viewed by another user, enable the attacker to execute commands with the target's administrative permissions.

 

Juniper SIRT is not aware of any malicious exploitation of this vulnerability.

These issues were found during internal product security testing or research.

 

Solution

The following software releases have been updated to resolve these issues: Junos Space 24.1R4 and all subsequent releases.

This issue is being tracked as 18780881871861187236118720471873493187265618722791872378187238018731401873134187265318724951872374187055018732331873107187247018720321872201187055118092621872060 and 1877685 which are visible on the Customer Support website.

Note: Juniper SIRT's policy is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).

Workaround

There are no known workarounds for these issues. 

Severity Assessment

Information for how Juniper Networks uses CVSS can be found at KB 16446 [juniper.net], "Common Vulnerability Scoring System (CVSS) and Juniper's Security Advisories."

Modification History

2025-10-08: Initial Publication
2025-10-14: Added missing attribution to NATO Cyber Security Center for responsibly reporting CVE-2025-59978

Related Information

Acknowledgements

Juniper SIRT would like to acknowledge and thank Arnoldas Radisauskas and Jorge Escabias from NATO Cyber Security Center for responsibly reporting CVE-2025-59978.