Skip to content
VulniPulse

Palo Alto Networks Security Advisories & CVEs

45 advisories tracked · Palo Alto Networks Security Advisories · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Palo Alto CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Check if your Palo Alto device is affected

Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in Palo Alto's recent advisories.

Official source

Palo Alto Networks Security Advisories

Polled via the official security.paloaltonetworks.com RSS feed. Advisory pages are fetched for new items to extract affected/fixed version tables.

Latest Palo Alto advisories

High7.1Vendor: MediumPalo Alto

High [CVE-2026-0309] PAN-OS: Authenticated Command Injection in CLI with Luna HSM Configuration

CVE-2026-0309 PAN-OS: Authenticated Command Injection in CLI with Luna HSM Configuration

CVE-2026-0309
PAN-OSFirewallPAN-OS / Panorama
Sep 9, 2026
High8.4Vendor: MediumPalo Alto

High [CVE-2026-0306] Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows

CVE-2026-0306 Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows

CVE-2026-0306
Prisma Access
Sep 9, 2026
HighPalo Alto

High [CVE-2026-76020 +18] PAN-SA-2026-0012 Chromium: Monthly Vulnerability Update (September 2026)

PAN-SA-2026-0012 Chromium: Monthly Vulnerability Update (September 2026)

CVE-2026-76020CVE-2026-76022CVE-2026-76038+16
Unclassified
Sep 9, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0307] GlobalProtect App: Local Privilege Escalation Vulnerabilities

CVE-2026-0307 GlobalProtect App: Local Privilege Escalation Vulnerabilities

CVE-2026-0307
GlobalProtect
Sep 9, 2026
High7.5Vendor: MediumPalo Alto

High [CVE-2026-0304] Cortex XDR Broker VM: Privilege Escalation Vulnerability

CVE-2026-0304 Cortex XDR Broker VM: Privilege Escalation Vulnerability

CVE-2026-0304
Cortex
Sep 9, 2026
High7.2Vendor: MediumPalo Alto

High [CVE-2026-0295] GlobalProtect App: Local Privilege Escalation via Race Condition on macOS

CVE-2026-0295 GlobalProtect App: Local Privilege Escalation via Race Condition on macOS

CVE-2026-0295
GlobalProtect
Aug 12, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0294] Prisma Access Agent: Local Privilege Escalation

CVE-2026-0294 Prisma Access Agent: Local Privilege Escalation

CVE-2026-0294
Prisma Access
Aug 12, 2026
High7.4Vendor: MediumPalo Alto

High [CVE-2026-0296] GlobalProtect App: Improper Certificate Validation Bypass Vulnerability

CVE-2026-0296 GlobalProtect App: Improper Certificate Validation Bypass Vulnerability

CVE-2026-0296
GlobalProtect
Aug 12, 2026
High7.7Vendor: MediumPalo Alto

High [CVE-2026-0297] GlobalProtect App: Buffer Overflow Vulnerability during UDP Tunnel Handshake

CVE-2026-0297 GlobalProtect App: Buffer Overflow Vulnerability during UDP Tunnel Handshake

CVE-2026-0297
GlobalProtect
Aug 12, 2026
High8.3Vendor: MediumPalo Alto

High [CVE-2026-0293] Prisma Access Agent: Anti-Tamper Protection Bypass on Windows

CVE-2026-0293 Prisma Access Agent: Anti-Tamper Protection Bypass on Windows

CVE-2026-0293
Prisma Access
Aug 12, 2026
HighPalo Alto

High [CVE-2026-0289 +448] PAN-SA-2026-0011 Chromium: Monthly Vulnerability Update (August 2026)

PAN-SA-2026-0011 Chromium: Monthly Vulnerability Update (August 2026)

CVE-2026-0289CVE-2026-0290CVE-2026-13774+446
Unclassified
Aug 12, 2026
High7.7Vendor: MediumPalo Alto

High [CVE-2026-0298] GlobalProtect App: Code Execution Vulnerability in Windows Pre-Logon Access Provider (PLAP)

CVE-2026-0298 GlobalProtect App: Code Execution Vulnerability in Windows Pre-Logon Access Provider (PLAP)

CVE-2026-0298
GlobalProtect
Aug 12, 2026
High8.7Vendor: MediumPalo Alto

High [CVE-2026-0277] Prisma Access Agent: Improper Certificate Validation on iOS

An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS, Linux, Android and ChromeOS are not affected.

CVE-2026-0277
Prisma Access
Jul 8, 2026
High8.4Vendor: MediumPalo Alto

High [CVE-2026-0278] Prisma Access Agent: Multiple DLP Policy Bypass Vulnerabilities on Windows

Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.

CVE-2026-0278
Prisma Access
Jul 8, 2026
High7.8Vendor: MediumPalo Alto

High [CVE-2026-0283] PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)

An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized site-to-site VPN connection. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

CVE-2026-0283
PAN-OSFirewallCloud NGFWPAN-OS / Panorama
Jul 8, 2026
High7.8Vendor: MediumPalo Alto

High [CVE-2026-0284] PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)

An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to information disclosure or corruption of internal LSVPN satellite data. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

CVE-2026-0284
PAN-OSFirewallCloud NGFWPAN-OS / Panorama
Jul 8, 2026
High7.0Vendor: MediumPalo Alto

High [CVE-2026-0285] PAN-OS: Server-Side Request Forgery Vulnerability in Management Web Interface

A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the firewall to internal services. The security risk posed by this issue is minimized when the management interface is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

CVE-2026-0285
PAN-OSFirewallCloud NGFWPAN-OS / Panorama
Jul 8, 2026
High8.5Vendor: MediumPalo Alto

High [CVE-2026-0286] PAN-OS: Authenticated Command Injection in CLI

A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma Access® are not impacted by this vulnerability.

CVE-2026-0286
PAN-OSFirewallCloud NGFWPAN-OS / Panorama
Jul 8, 2026
High8.7Vendor: MediumPalo Alto

High [CVE-2026-0287] PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to or through a dataplane interface. Repeated attempts to trigger this condition result in the firewall entering maintenance mode. Panorama is not impacted by these vulnerabilities. Affected products named by the advisory: Cloud NGFW; Prisma Access.

CVE-2026-0287
PAN-OSFirewallPrisma AccessCloud NGFW
Jul 8, 2026
HighPalo Alto Exploited CISA KEV

High [CVE-2026-0275 +529] PAN-SA-2026-0010 Chromium and Prisma Browser: Monthly Vulnerability Update (July 2026)

Palo Alto Networks incorporated the following Chromium security fixes into our products: CVESummaryCVE-2026-10881 Out of bounds read and write in ANGLECVE-2026-10882 Use after free in NetworkCVE-2026-10883 Type Confusion in ANGLECVE-2026-10884 Use after free in ChromecastCVE-2026-10885 Use after free in Chrome for iOSCVE-2026-10886 Use after free in FileSystemCVE-2026-10887 Use after free in ChromotingCVE-2026-10888 Use after free in Cast StreamingCVE-2026-10889 Out of bounds read in ANGLECVE-2026-10890 Use after free in CastCVE-2026-10891 Use after free in GFXCVE-2026-10892 Out of bounds write in GPUCVE-2026-10893 Use after free in ChromotingCVE-2026-10894 Use after free in PrintingCVE-2026-10895 Use after free in OzoneCVE-2026-10896 Use after free in Chrome for iOSCVE-2026-10897 Inappropriate implementation in GPUCVE-2026-10898 Sta

CVE-2026-0275CVE-2026-10881CVE-2026-10882+527
Unclassified
Jul 8, 2026

← All vendors