Palo Alto Networks NGFW / Firewalls Vulnerabilities & Security Advisories
22 advisories tracked · Palo Alto Networks Security Advisories · 2 listed in the CISA Known Exploited Vulnerabilities catalog
Every row below is a published Palo Alto Networks advisory that VulniPulse classified as NGFW / Firewalls, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 4 critical, 12 high, 6 medium.
Android app · Google Play
Monitor Palo Alto CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Source
Palo Alto Networks Security Advisories
Polled via the official security.paloaltonetworks.com RSS feed. Advisory pages are fetched for new items to extract affected/fixed version tables.
Latest Palo Alto NGFW / Firewalls advisories
High [CVE-2026-0283] PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
CVE-2026-0283 PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
High [CVE-2026-0284] PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
CVE-2026-0284 PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
High [CVE-2026-0285] PAN-OS: Server-Side Request Forgery Vulnerability in Management Web Interface
CVE-2026-0285 PAN-OS: Server-Side Request Forgery Vulnerability in Management Web Interface
High [CVE-2026-0286] PAN-OS: Authenticated Command Injection in CLI
CVE-2026-0286 PAN-OS: Authenticated Command Injection in CLI
High [CVE-2026-0287] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing
CVE-2026-0287 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing Affected products named by the advisory: Cloud NGFW; Prisma Access.
High [CVE-2026-0273] PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
CVE-2026-0273 PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
High [CVE-2026-0272] PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
High [CVE-2026-0257] PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities Affected products named by the advisory: Prisma Access.
High [CVE-2026-0261] PAN-OS: Authenticated Admin Command Injection Vulnerability
CVE-2026-0261 PAN-OS: Authenticated Admin Command Injection Vulnerability
High [CVE-2026-0262] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
CVE-2026-0262 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing Affected products named by the advisory: Prisma Access.
High [CVE-2026-0258] PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
CVE-2026-0258 PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
High [CVE-2026-0229] denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software
A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Cloud NGFW and Prisma Access® are not impacted by this vulnerability.