Skip to content
VulniPulse

Complete feed

Action required

Critical/high still unreviewed, or CISA KEV listed

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Critical9.3Vendor: HighPalo Alto

Critical [CVE-2026-0274] Cortex XSOAR: Improper Validation of Credentials in CommvaultSecurityIQ integration

CVE-2026-0274 Cortex XSOAR: Improper Validation of Credentials in CommvaultSecurityIQ integration

CVE-2026-0274
Cortex
Jun 10, 2026
High7.5Vendor: MediumPalo Alto

High [CVE-2026-0270] Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270 Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270
Cortex
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0271] Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271 Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271
Prisma Access
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0272] PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
HighPalo Alto

High [CVE-2026-10000 +243] PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

CVE-2026-10000CVE-2026-10001CVE-2026-10002+241
Unclassified
Jun 10, 2026
High7.8Palo Alto PoC reported CISA KEV

High [CVE-2026-0257] PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities Affected products named by the advisory: Prisma Access.

CVE-2026-0257
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
Jun 3, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0265] PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265 PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0264] PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264 PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0263] PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263 PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.3Palo Alto Exploited CISA KEV

Critical [CVE-2026-0300] PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Vendor: MediumPalo Alto

High [CVE-2026-0259] WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259 WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259
WildFire
May 28, 2026
High8.6Vendor: MediumPalo Alto

High [CVE-2026-0261] PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261 PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High8.7Vendor: MediumPalo Alto

High [CVE-2026-0262] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing

CVE-2026-0262 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing Affected products named by the advisory: Prisma Access.

CVE-2026-0262
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
May 28, 2026
High8.3Vendor: MediumPalo Alto

High [CVE-2026-0258] PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258 PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Palo Alto

High [CVE-2026-0243] denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.

CVE-2026-0243
Prisma Access
May 13, 2026
High8.6Palo Alto

High [CVE-2026-0248] improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS

An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.

CVE-2026-0248
Prisma Access
May 13, 2026
High7.7Palo Alto

High [CVE-2026-0244] improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION

An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.

CVE-2026-0244
Prisma Access
May 13, 2026
High7.4Palo Alto

High [CVE-2026-0240] information disclosure vulnerability in Trust Protection Foundation

An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.

CVE-2026-0240
Unclassified
May 13, 2026
High7.2Vendor: MediumPalo Alto

High [CVE-2026-0241] Trust Protection Foundation: Multiple Authorization Bypass Vulnerabilities

CVE-2026-0241 Trust Protection Foundation: Multiple Authorization Bypass Vulnerabilities

CVE-2026-0241
Unclassified
May 13, 2026
High8.6Vendor: MediumPalo Alto

High [CVE-2026-0242] Trust Protection Foundation: SQL Injection Vulnerability

CVE-2026-0242 Trust Protection Foundation: SQL Injection Vulnerability

CVE-2026-0242
Unclassified
May 13, 2026