Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-0392

eParakstītājs 3.0 for Windows before version 1.10.0 retrieves and executes its automatic updates over a channel that is not authenticated or integrity-protected. On each launch the application fetches an update descriptor (XML) over TLS but accepts any TLS certificate (a permissive TrustManager and a HostnameVerifier that always returns true), does not verify any digital signature on the update descriptor, and does not verify the Authenticode signature or a checksum of the downloaded installer b

PUBLISHED
Vendor
Latvijas Valsts radio un televīzijas centrs (LVRTC)
Product
eParakstītājs 3.0
Provider severity
HIGH
Conflicts
1

CVE-2026-0391

User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft
Product
Microsoft Edge (Chromium-based)
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0390

Reliance on untrusted inputs in a security decision in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2016, Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2016 (Server Core installation), Windows 10 Version 1607, Windows Server 2022, Windows 10 Version 21H2, Windows 10 Version 22H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0386

Improper access control in Windows Deployment Services allows an unauthorized attacker to execute code over an adjacent network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2008 R2 Service Pack 1, Windows Server 2025 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2012 (Server Core installation), Windows Server 2019, Windows Server 2012 R2 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2012 R2, Windows Server 2022, Windows Server 2016, Windows Server 2016 (Server Core installation), Windows Server 2012, Windows Server 2019 (Server Core installation), Windows Server 2025, Windows Server 2008 R2 Service Pack 1 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-0385

Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability

PUBLISHED
Vendor
Microsoft
Product
Microsoft Edge for Android
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0383

A vulnerability in Brocade Fabric OS could allow an authenticated, local attacker with privileges to access the Bash shell to access insecurely stored file contents including the history command.

PUBLISHED
Vendor
Brocade
Product
Fabric OS
Provider severity
HIGH
Conflicts
0

CVE-2026-0300

A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series firewalls by sending specially crafted packets. The risk of this issue is greatly reduced if you secure access to the User-ID™ Authentication Portal per the best practice guidelines https://knowledgebase.paloaltonetworks.com/KCSArticleDetail by r

PUBLISHEDCISA KEV
Vendor
Palo Alto Networks, Siemens, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, RUGGEDCOM APE1808, PAN-OS, Prisma Access
Provider severity
CRITICAL, HIGH
Conflicts
2

CVE-2026-0288

Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic. The security risk posed by this issue is minimized when the User-ID Terminal Server Agent connectivity is restricted to only trusted internal IP addresses according to our recommended

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, Cloud NGFW, Prisma Access
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-0287

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to or through a dataplane interface. Repeated attempts to trigger this condition result in the firewall entering maintenance mode. Panorama is not impacted by these vulnerabilities.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, Cloud NGFW, Prisma Access
Provider severity
MEDIUM
Conflicts
2

CVE-2026-0286

A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma Access® are not impacted by this vul

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, Prisma Access, PAN-OS
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0285

A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the firewall to internal services. The security risk posed by this issue is minimized when the management interface is restricted to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-b

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, Cloud NGFW, Prisma Access
Provider severity
MEDIUM
Conflicts
2

CVE-2026-0284

An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to information disclosure or corruption of internal LSVPN satellite data. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, Prisma Access, Cloud NGFW
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0283

An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized site-to-site VPN connection. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, PAN-OS, Prisma Access
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0282

A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to delete files from a temporary directory. The security risk posed by this issue is minimized by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-ma

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, Prisma Access, PAN-OS
Provider severity
LOW
Conflicts
2

CVE-2026-0281

An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to obtain web session tokens. This requires a legitimate user to first click on a malicious link provided by the attacker. The security risk posed by this issue is minimized by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Prisma Access, Cloud NGFW, PAN-OS
Provider severity
LOW
Conflicts
2

CVE-2026-0280

An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be blocked to reach protected services. Cloud NGFW and Panorama are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, Cloud NGFW, Prisma Access, Panorama
Provider severity
LOW
Conflicts
1

CVE-2026-0279

Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Portal) service, GlobalProtect™ gateway/portal features and Clientless VPN of Palo Alto Networks PAN-OS® software enables a malicious unauthenticated user to store or execute malicious JavaScript payload. The security risk posed by this issue is minimized when the management interface and access to the User-ID™ Authentication Portal is restricted to only trusted internal IP addresses according to o

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Prisma Access, Cloud NGFW, PAN-OS
Provider severity
LOW
Conflicts
2

CVE-2026-0278

Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0277

An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS, Linux, Android and ChromeOS are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0276

A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root user.

PUBLISHED
Vendor
Palo Alto Networks
Product
Cortex XDR Broker VM
Provider severity
LOW
Conflicts
0

CVE-2026-0275

A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administrator with access to the macOS local filesystem to perform actions on the device with root privileges. This issue only affects Prisma® Browser on macOS.

PUBLISHED
Vendor
Palo Alto Networks
Product
Prisma Browser
Provider severity
LOW
Conflicts
0

CVE-2026-0274

An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Cortex XSIAM CommvaultSecurityIQ Marketplace, Cortex XSOAR CommvaultSecurityIQ Marketplace
Provider severity
HIGH
Conflicts
1

CVE-2026-0273

A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators and by restricting access to the management web interface to only trusted internal IP address

PUBLISHED
Vendor
Siemens, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
RUGGEDCOM APE1808, Prisma Access, PAN-OS, Cloud NGFW
Provider severity
MEDIUM
Conflicts
2

CVE-2026-0272

A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allows an authenticated administrator with access to the Command Line Interface (CLI) to perform actions on the device with root privileges. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators and by restricting access to the management interface to only trusted internal IP addresses according to our recommended best practice deployment g

PUBLISHED
Vendor
Siemens, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
RUGGEDCOM APE1808, Cloud NGFW, PAN-OS, Prisma Access
Provider severity
MEDIUM
Conflicts
2

CVE-2026-0271

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges. This does not impact Prisma Access Agent on Windows, macOS, iOS, Android, or ChromeOS.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0270

A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenticated attacker on an adjacent network, with the ability to intercept and manipulate network response traffic via a man-in-the-middle (MITM) attack, to write arbitrary files to the host.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Cortex XSOAR, Cortex XSOAR
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0269

A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Siemens
Product
Prisma Access, PAN-OS, Cloud NGFW, Panorama, RUGGEDCOM APE1808
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0268

A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffic outside the VPN tunnel. This does not impact Prisma Access Agent on Windows, macOS, iOS, Android, or ChromeOS.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0267

An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is known, the user can perform these actions even if the GlobalProtect app configuration would not normally permit them to do so.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
GlobalProtect App, GlobalProtect App, GlobalProtect UWP App
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0266

A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not affected by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Siemens, Palo Alto Networks
Product
Prisma Access, Cloud NGFW, RUGGEDCOM APE1808, PAN-OS
Provider severity
LOW
Conflicts
2

CVE-2026-0265

An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled. The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used. The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses acco

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Siemens
Product
Prisma Access, Cloud NGFW, PAN-OS, RUGGEDCOM APE1808
Provider severity
HIGH, LOW, MEDIUM
Conflicts
2

CVE-2026-0264

A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGFW and Prisma Access) or potentially execute arbitrary code by sending specially crafted network traffic (PA-Series hardware only). Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Siemens
Product
Cloud NGFW, PAN-OS, Prisma Access, RUGGEDCOM APE1808
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-0263

A buffer overflow vulnerability in the IKEv2 processing of Palo Alto Networks PAN-OS® software allows an unauthenticated network-based attacker to execute arbitrary code with elevated privileges on the firewall, or cause a denial of service (DoS) condition. Panorama, Cloud NGFW, and Prisma® Access are not impacted by these vulnerabilities.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, PAN-OS, Prisma Access
Provider severity
HIGH
Conflicts
1

CVE-2026-0262

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic. Panorama and Cloud NGFW are not impacted by these vulnerabilities.

PUBLISHED
Vendor
Palo Alto Networks, Siemens, Palo Alto Networks, Palo Alto Networks
Product
Cloud NGFW, RUGGEDCOM APE1808, Prisma Access, PAN-OS
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0261

Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators and by restricting access to the management web interface to only trusted internal

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Siemens
Product
Cloud NGFW, PAN-OS, Prisma Access, RUGGEDCOM APE1808
Provider severity
MEDIUM
Conflicts
2

CVE-2026-0259

An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive information and delete arbitrary files. This vulnerability affects WF-500 and WF-500-B appliances running in the default non-FIPS configuration mode. The WildFire Appliance (WF-500, WF-500-B) software update is now available to customers that use the WildFire Appliance (WF-500, WF-500-B) for on-premise sandboxing. Please note that customers using th

PUBLISHED
Vendor
Palo Alto Networks
Product
WildFire WF-500 and WF-500-B
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0258

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition. Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabilities.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Siemens, Palo Alto Networks
Product
Cloud NGFW, PAN-OS, RUGGEDCOM APE1808, Prisma Access
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0257

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.

PUBLISHEDCISA KEV
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Siemens
Product
Cloud NGFW, Prisma Access, PAN-OS, RUGGEDCOM APE1808
Provider severity
HIGH
Conflicts
1

CVE-2026-0256

A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not impacted by this vulnerability.

PUBLISHED
Vendor
Palo Alto Networks, Siemens, Palo Alto Networks, Palo Alto Networks
Product
PAN-OS, RUGGEDCOM APE1808, Cloud NGFW, Prisma Access
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0251

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges. The GlobalProtect app on iOS, Android, Chrome OS and GlobalProtect UWP app are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Global Protect App, GlobalProtect App, GlobalProtect App, GlobalProtect App
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0250

A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered during the processing of requests and responses exchanged between Portal and Gateway. The GlobalProtect app on iOS is not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
GlobalProtect App, GlobalProtect UWP App, GlobalProtect App, GlobalProtect App, GlobalProtect App, GlobalProtect App, GlobalProtect App
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0249

Multiple improper certificate validation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enables an attacker to intercept encrypted communications and potentially compromise the endpoint. This can enable a local non-administrative operating system user or an attacker on the same subnet to redirect traffic to an unauthorized server and facilitate the installation of malicious software. The GlobalProtect app on Linux, Windows, iOS and GlobalProtect UWP app are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
GlobalProtect App, GlobalProtect App, GlobalProtect App, GlobalProtect App
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0248

An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0247

Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication controls and execute privileged operations.

PUBLISHED
Vendor
Palo Alto Networks
Product
Prisma Access Agent
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0246

A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrative user to escalate their privileges to root on macOS and Linux or NT AUTHORITY\SYSTEM on Windows. This allows the user to execute arbitrary code and read sensitive information otherwise accessible only to privileged accounts. The Prisma Access Agent on iOS, Android and Chrome OS are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks, Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent, Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0245

Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. The Prisma Access Agent on Linux, ChromeOS, Android, and iOS are not affected.

PUBLISHED
Vendor
Palo Alto Networks, Palo Alto Networks
Product
Prisma Access Agent, Prisma Access Agent
Provider severity
MEDIUM
Conflicts
1

CVE-2026-0244

An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.

PUBLISHED
Vendor
Palo Alto Networks
Product
Prisma SD-WAN ION
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0243

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.

PUBLISHED
Vendor
Palo Alto Networks
Product
Prisma SD-WAN ION
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0242

A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.

PUBLISHED
Vendor
Palo Alto Networks
Product
Trust Protection Foundation
Provider severity
MEDIUM
Conflicts
0

CVE-2026-0241

Incorrect Authorization vulnerabilities in Trust Protection Foundation allow attackers to bypass access controls and perform unauthorized actions on restricted resources.

PUBLISHED
Vendor
Palo Alto Networks
Product
Trust Protection Foundation
Provider severity
MEDIUM
Conflicts
0