Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.1
CVE-2026-0274
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticate…
Cortex Xsiam Commvaultsecurityiq Marketplace
Mitigation only
CRITICAL 9.8
CVE-2026-0300 KEVEPSS 32%
A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un…
Pan Os
Mitigation only
CRITICAL 9.8
CVE-2024-0012 KEVEPSS 100%
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac…
Pan Os
Mitigation only
CRITICAL 10.0
CVE-2024-3400 KEVEPSS 100%
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for speci…
Pan Os
Mitigation only
MEDIUM 6.7
CVE-2022-0031
A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a l…
Cortex Xsoar
Mitigation only
MEDIUM 6.7
CVE-2022-0026
A local privilege escalation (PE) vulnerability exists in Palo Alto Networks Cortex XDR agent software on Windows that enables an authenticated local…
Cortex Xdr Agent
Mitigation only
MEDIUM 5.4
CVE-2022-0020
A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticated network-based attacker to …
Cortex Xsoar
No fix yet
HIGH 8.1
CVE-2021-3051
An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR SAML authentication that enables an unauthenticated network-…
Cortex Xsoar
Mitigation only
HIGH 7.8
CVE-2021-3042
A local privilege escalation (PE) vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables an authenticated …
Cortex Xdr Agent
Mitigation only
CRITICAL 9.8
CVE-2021-3044
An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enables a remote unauthenticated attacker with network access to the Corte…
Cortex Xsoar
Mitigation only
MEDIUM 5.1
CVE-2021-3034
An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO)…
Cortex Xsoar
Mitigation only
CRITICAL 9.8
CVE-2021-3033
An improper verification of cryptographic signature vulnerability exists in the Palo Alto Networks Prisma Cloud Compute console. This vulnerability e…
Prisma Cloud
Mitigation only
HIGH 7.8
CVE-2020-1984
Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create folders or append data' access t…
Secdo
Mitigation only
HIGH 7.8
CVE-2020-1985
Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escala…
Secdo
Mitigation only
MEDIUM 5.5
CVE-2020-1986
Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS…
Secdo
Mitigation only
MEDIUM 6.1
CVE-2019-1568
Cross-site scripting (XSS) vulnerability in Palo Alto Networks Demisto 4.5 build 40249 may allow an unauthenticated attacker to run arbitrary JavaScr…
Demisto
Mitigation only
HIGH 7.5
CVE-2019-1572
PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files.
Pan Os
Mitigation only
CRITICAL 9.8
CVE-2018-10143EPSS 25%
The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level com…
Expedition
No fix yet
HIGH 7.5
CVE-2018-10142
The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.
Expedition
Mitigation only
MEDIUM 6.1
CVE-2018-7636
The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML via specially craf…
Pan Os
Mitigation only
MEDIUM 5.9
CVE-2017-17841
Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts a GlobalProtect por…
Pan Os
Mitigation only
MEDIUM 5.3
CVE-2017-6356
Palo Alto Networks Terminal Services (aka TS) Agent 6.0, 7.0, and 8.0 before 8.0.1 uses weak permissions for unspecified resources, which allows atta…
Terminal Services Agent
Mitigation only
MEDIUM 5.4
CVE-2017-5584
Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, an…
Pan Os
Mitigation only
MEDIUM 5.4
CVE-2016-2219
Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users …
Pan Os
Mitigation only
HIGH 9.0
CVE-2012-6595
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated admin…
Pan Os
Mitigation only
HIGH 9.0
CVE-2012-6598
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to execute arbitrary c…
Pan Os
Mitigation only
HIGH 9.0
CVE-2012-6599
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users…
Pan Os
Mitigation only
HIGH 9.0
CVE-2012-6600
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users…
Pan Os
Mitigation only
MEDIUM 5.0
CVE-2012-6596
Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allows context-dependent…
Pan Os
Mitigation only