So the JunOS guest store a private key that is in the Linux host root authorized_keys.
And the user-facing cli have access to this key. That's a great #wtf Juniper.
If you have two box, could you check if the authorized_keys is the same on both? I could see Juniper putting the key in the firmware...