Skip to content
VulniPulse

Palo Alto Networks Security Advisories & CVEs

85 advisories tracked · Palo Alto Networks Security Advisories · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Palo Alto CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Check if your Palo Alto device is affected

Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in Palo Alto's recent advisories.

Official source

Palo Alto Networks Security Advisories

Polled via the official security.paloaltonetworks.com RSS feed. Advisory pages are fetched for new items to extract affected/fixed version tables.

Latest Palo Alto advisories

High7.5Vendor: MediumPalo Alto

High [CVE-2026-0270] Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270 Cortex XSOAR: Path Traversal Vulnerability

CVE-2026-0270
Cortex
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0271] Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271 Prisma Access Agent: Local Privilege Escalation by Authorized Users

CVE-2026-0271
Prisma Access
Jun 10, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0272] PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)

CVE-2026-0272
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
HighPalo Alto

High [CVE-2026-10000 +243] PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)

CVE-2026-10000CVE-2026-10001CVE-2026-10002+241
Unclassified
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0269] PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing

CVE-2026-0269 PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing

CVE-2026-0269
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0267] GlobalProtect App: Information Exposure Vulnerability on macOS

CVE-2026-0267 GlobalProtect App: Information Exposure Vulnerability on macOS

CVE-2026-0267
GlobalProtect
Jun 10, 2026
Medium4.8Vendor: LowPalo Alto

Medium [CVE-2026-0266] PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface

CVE-2026-0266 PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface

CVE-2026-0266
PAN-OSFirewallPAN-OS / Panorama
Jun 10, 2026
Medium6.9Palo Alto

Medium [CVE-2026-0268] Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux

CVE-2026-0268 Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux

CVE-2026-0268
Prisma Access
Jun 10, 2026
UnratedPalo Alto

Unknown [CVE-2026-35385 +4] PAN-SA-2026-0009 Informational Bulletin: Impact assessment of OSS CVEs in Prisma SD-WAN ION

The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to Prisma SD-WAN ION. While Prisma SD-WAN ION may include the affected OSS package, Prisma SD-WAN ION does not offer any scenarios required for an attacker to successfully exploit these vulnerabilities and is not impacted. CVESummaryCVE-2026-35385 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35386 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35388 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35387 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices.CVE-2026-35414 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..

CVE-2026-35385CVE-2026-35386CVE-2026-35387+2
Unclassified
Jun 10, 2026
High7.8Palo Alto PoC reported CISA KEV

High [CVE-2026-0257] PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities Affected products named by the advisory: Prisma Access.

CVE-2026-0257
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
Jun 3, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0265] PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265 PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

CVE-2026-0265
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0264] PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264 PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution

CVE-2026-0264
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.2Vendor: HighPalo Alto

Critical [CVE-2026-0263] PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263 PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing

CVE-2026-0263
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
Critical9.3Palo Alto Exploited CISA KEV

Critical [CVE-2026-0300] PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

CVE-2026-0300
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Vendor: MediumPalo Alto

High [CVE-2026-0259] WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259 WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)

CVE-2026-0259
WildFire
May 28, 2026
High8.6Vendor: MediumPalo Alto

High [CVE-2026-0261] PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261 PAN-OS: Authenticated Admin Command Injection Vulnerability

CVE-2026-0261
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High8.7Vendor: MediumPalo Alto

High [CVE-2026-0262] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing

CVE-2026-0262 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing Affected products named by the advisory: Prisma Access.

CVE-2026-0262
PAN-OSFirewallPrisma AccessPAN-OS / Panorama
May 28, 2026
High8.3Vendor: MediumPalo Alto

High [CVE-2026-0258] PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258 PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching

CVE-2026-0258
PAN-OSFirewallPAN-OS / Panorama
May 28, 2026
High7.1Palo Alto

High [CVE-2026-0243] denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.

CVE-2026-0243
Prisma Access
May 13, 2026
High8.6Palo Alto

High [CVE-2026-0248] improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS

An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.

CVE-2026-0248
Prisma Access
May 13, 2026

← All vendors