11 min read
CVE-2026-21902Juniper Networks+6 more
Juniper's Anomaly Detector Was Listening on Every Interface With No Auth, and That Was the Whole Bug
CVE-2026-21902 (CVSS 9.8) hands root on Juniper PTX routers to anyone who can reach port 8160 — because a service meant to stay internal was bound to 0.0.0.0 with zero authentication, no memory corruption required.
Sep 15, 20260