Palo Alto Networks Security Advisories & CVEs
85 advisories tracked · Palo Alto Networks Security Advisories · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Palo Alto CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Check if your Palo Alto device is affected
Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in Palo Alto's recent advisories.
Official source
Palo Alto Networks Security Advisories
Polled via the official security.paloaltonetworks.com RSS feed. Advisory pages are fetched for new items to extract affected/fixed version tables.
Latest Palo Alto advisories
High [CVE-2026-0270] Cortex XSOAR: Path Traversal Vulnerability
CVE-2026-0270 Cortex XSOAR: Path Traversal Vulnerability
High [CVE-2026-0271] Prisma Access Agent: Local Privilege Escalation by Authorized Users
CVE-2026-0271 Prisma Access Agent: Local Privilege Escalation by Authorized Users
High [CVE-2026-0272] PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
High [CVE-2026-10000 +243] PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)
PAN-SA-2026-0008 Chromium: Monthly Vulnerability Update (June 2026)
Medium [CVE-2026-0269] PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing
CVE-2026-0269 PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing
Medium [CVE-2026-0267] GlobalProtect App: Information Exposure Vulnerability on macOS
CVE-2026-0267 GlobalProtect App: Information Exposure Vulnerability on macOS
Medium [CVE-2026-0266] PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface
CVE-2026-0266 PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface
Medium [CVE-2026-0268] Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux
CVE-2026-0268 Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux
Unknown [CVE-2026-35385 +4] PAN-SA-2026-0009 Informational Bulletin: Impact assessment of OSS CVEs in Prisma SD-WAN ION
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to Prisma SD-WAN ION. While Prisma SD-WAN ION may include the affected OSS package, Prisma SD-WAN ION does not offer any scenarios required for an attacker to successfully exploit these vulnerabilities and is not impacted. CVESummaryCVE-2026-35385 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35386 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35388 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..CVE-2026-35387 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices.CVE-2026-35414 Prisma SD-WAN ION is not affected as the conditions required to exploit this vulnerability do not exist in Prisma SD-WAN ION Devices..
High [CVE-2026-0257] PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities Affected products named by the advisory: Prisma Access.
Critical [CVE-2026-0265] PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
CVE-2026-0265 PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Critical [CVE-2026-0264] PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
CVE-2026-0264 PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
Critical [CVE-2026-0263] PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
CVE-2026-0263 PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
Critical [CVE-2026-0300] PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
High [CVE-2026-0259] WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
CVE-2026-0259 WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
High [CVE-2026-0261] PAN-OS: Authenticated Admin Command Injection Vulnerability
CVE-2026-0261 PAN-OS: Authenticated Admin Command Injection Vulnerability
High [CVE-2026-0262] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
CVE-2026-0262 PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing Affected products named by the advisory: Prisma Access.
High [CVE-2026-0258] PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
CVE-2026-0258 PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
High [CVE-2026-0243] denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices
A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.
High [CVE-2026-0248] improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS
An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.