Vulnerability index

Browse CVEs

301 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Prisma Sd Wan MEDIUM 6.5
CVE-2026-0243

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to …

Fix: 6.3.6 / 6.4.3+
Fix from $1,600 2026-05-13
Pan Os HIGH 7.5
CVE-2026-0262

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a de…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-05-13
Pan Os HIGH 7.2
CVE-2026-0261

Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-05-13
Pan Os CRITICAL 9.1
CVE-2026-0257 KEVEPSS 94%

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass se…

Fix: 10.2.7+
Fix from $2,300 2026-05-13
Pan Os CRITICAL 9.1
CVE-2026-0258

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attac…

Fix: 10.2.7 / 10.2.10+
Fix from $2,300 2026-05-13
Pan Os HIGH 8.8
CVE-2026-0259

An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive inform…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-05-13
Globalprotect HIGH 8.1
CVE-2026-0250

A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system proce…

Fix: 6.0.12 / 6.0.13+
Fix from $1,950 2026-05-13
Globalprotect HIGH 7.8
CVE-2026-0251

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to N…

Fix: 6.0.11 / 6.0.13+
Fix from $1,950 2026-05-13
Globalprotect MEDIUM 6.5
CVE-2026-0249

Multiple improper certificate validation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enables an attacker to intercept encrypted comm…

Fix: 6.0.13 / 6.0.14+
Fix from $1,600 2026-05-13
Prisma Sd Wan HIGH 8.1
CVE-2026-0244

An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate…

Fix: 6.3.6 / 6.4.3+
Fix from $1,950 2026-05-13
Prisma Access Agent HIGH 7.8
CVE-2026-0246

A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrati…

Fix: 26.2.1+
Fix from $1,950 2026-05-13
Prisma Access Agent HIGH 7.8
CVE-2026-0247

Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication c…

Fix: 26.2.1+
Fix from $1,950 2026-05-13
Prisma Access Agent MEDIUM 5.9
CVE-2026-0248

An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-mi…

Fix: 26.2.1+
Fix from $1,600 2026-05-13
Prisma Access Agent MEDIUM 5.5
CVE-2026-0245

Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. …

Fix: 26.2.1+
Fix from $1,600 2026-05-13
Trust Protection Foundation HIGH 8.7
CVE-2026-0240

An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the ser…

Fix: 24.1.13 / 24.3.6+
Fix from $1,950 2026-05-13
Prisma Browser HIGH 7.8
CVE-2026-0236

A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its AppleScript interface allowing…

Fix: 146.10.7.154+
Fix from $1,950 2026-05-13
Trust Protection Foundation HIGH 7.2
CVE-2026-0241

Incorrect Authorization vulnerabilities in Trust Protection Foundation allow attackers to bypass access controls and perform unauthorized actions on …

Fix: 24.1.13 / 24.3.6+
Fix from $1,950 2026-05-13
Chronosphere Collector MEDIUM 6.5
CVE-2026-0239

An information disclosure vulnerability in the Chronosphere Chronocollector enables an unauthenticated attacker with network access to the collector …

Fix: 0.116.0+
Fix from $1,600 2026-05-13
Pan Os CRITICAL 9.8
CVE-2026-0263

A buffer overflow vulnerability in the IKEv2 processing of Palo Alto Networks PAN-OS® software allows an unauthenticated network-based attacker to ex…

Fix: 11.1.4 / 11.1.6+
Fix from $2,300 2026-05-13
Pan Os CRITICAL 9.8
CVE-2026-0264

A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker wi…

Fix: 10.2.7 / 10.2.10+
Fix from $2,300 2026-05-13
Pan Os HIGH 8.1
CVE-2026-0265

An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authe…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-05-13
Prisma Browser HIGH 7.8
CVE-2026-0237

An improper protection of alternate path vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to an interna…

Fix: 146.16.6.165+
Fix from $1,950 2026-05-13
Pan Os CRITICAL 9.8
CVE-2026-0300 KEVEPSS 32%

A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un…

Mitigation only
Fix from $2,300 2026-05-06
Cortex Xsiam CRITICAL 9.1
CVE-2026-0234

An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during integration of Microsoft T…

Fix: 1.5.52+
Fix from $2,300 2026-04-13
Autonomous Digital Experience Manager HIGH 8.8
CVE-2026-0233

A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an unauthenticated attacker with…

Fix: 5.10.14+
Fix from $1,950 2026-04-13
Pan Os HIGH 7.5
CVE-2026-0227

A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to the firewall. Repeate…

Fix: 10.1.14 / 10.2.7+
Fix from $1,950 2026-01-15
Pan Os HIGH 7.2
CVE-2025-4615

An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables an authenticated ad…

Fix: 10.2.17 / 11.1.11+
Fix from $1,950 2025-10-09
Globalprotect HIGH 8.8
CVE-2025-4232

An improper neutralization of wildcards vulnerability in the log collection feature of Palo Alto Networks GlobalProtect™ app on macOS allows a non ad…

Fix: 6.2.8 / 6.3.3+
Fix from $1,950 2025-06-13
Pan Os HIGH 7.2
CVE-2025-4231

A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. Th…

Fix: 10.2.8 / 11.0.3+
Fix from $1,950 2025-06-13
Pan Os HIGH 7.5
CVE-2025-0130

A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated attacker to send a burs…

Fix: 11.1.6 / 11.2.5+
Fix from $1,950 2025-05-14