Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

85 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High7.5Vendor: MediumPalo Alto

High [CVE-2026-0270] Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270 Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270
Cortex
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0271] Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271 Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271
Prisma Access
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0272] PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
HighPalo Alto

High [CVE-2026-10000 +243] PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

CVE-2026-10000CVE-2026-10001CVE-2026-10002+241
Unclassified
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0269] PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing

CVE-2026-0269 PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing

CVE-2026-0269
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0267] GlobalProtect App: Information Exposure Vulnerability on macOS

CVE-2026-0267 GlobalProtect App: Information Exposure Vulnerability on macOS

CVE-2026-0267
GlobalProtect
Jun 10, 2026
Medium4.8Vendor: LowPalo Alto

Medium [CVE-2026-0266] PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface

CVE-2026-0266 PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface

CVE-2026-0266
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0268] Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux

CVE-2026-0268 Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux

CVE-2026-0268
Prisma Access
Jun 10, 2026
UnratedPalo Alto

Advisory [CVE-2026-35385 +4] PAN-SA-2026-0009 Informational Bulletin: Impact assessment of OSS CVEs in Prisma SD-WAN ION

The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to Prisma SD-WAN ION. While Prisma SD-WAN ION may include the affected OSS package, Prisma SD-WAN ION does not offer any scenarios required for an attacker to successfully exploit these vulnerabilities and is not impacted. CVESummaryCVE-2026-35385 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35386 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35388 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35387 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices.CVE-2026-35414 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..

CVE-2026-35385CVE-2026-35386CVE-2026-35387+2
Unclassified
Jun 10, 2026
High7.8Palo Alto PoC reported CISA KEV

High [CVE-2026-0257] PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities Affected products named by the advisory: Prisma Access.

CVE-2026-0257
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
Jun 3, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0265] PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265 PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0264] PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264 PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0263] PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263 PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.3Palo Alto Exploited CISA KEV

Critical [CVE-2026-0300] PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Vendor: MediumPalo Alto

High [CVE-2026-0259] WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259 WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259
WildFire
May 28, 2026
High8.6Vendor: MediumPalo Alto

High [CVE-2026-0261] PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261 PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High8.7Vendor: MediumPalo Alto

High [CVE-2026-0262] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing

CVE-2026-0262 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing Affected products named by the advisory: Prisma Access.

CVE-2026-0262
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
May 28, 2026
High8.3Vendor: MediumPalo Alto

High [CVE-2026-0258] PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258 PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Palo Alto

High [CVE-2026-0243] denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.

CVE-2026-0243
Prisma Access
May 13, 2026
High8.6Palo Alto

High [CVE-2026-0248] improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS

An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.

CVE-2026-0248
Prisma Access
May 13, 2026