Vulnerability index

Browse CVEs

301 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2026-0243 A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to … Prisma Sd Wan 6.3.6 / 6.4.3+ Fix from $1,6002026-05-13 HIGH 7.5 CVE-2026-0262 Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a de… Pan Os 10.2.7 / 10.2.10+ Fix from $1,9502026-05-13 HIGH 7.2 CVE-2026-0261 Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions… Pan Os 10.2.7 / 10.2.10+ Fix from $1,9502026-05-13 CRITICAL 9.1 CVE-2026-0257 KEVEPSS 94% Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass se… Pan Os 10.2.7+ Fix from $2,3002026-05-13 CRITICAL 9.1 CVE-2026-0258 A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attac… Pan Os 10.2.7 / 10.2.10+ Fix from $2,3002026-05-13 HIGH 8.8 CVE-2026-0259 An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive inform… Pan Os 10.2.7 / 10.2.10+ Fix from $1,9502026-05-13 HIGH 8.1 CVE-2026-0250 A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system proce… Globalprotect 6.0.12 / 6.0.13+ Fix from $1,9502026-05-13 HIGH 7.8 CVE-2026-0251 Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to N… Globalprotect 6.0.11 / 6.0.13+ Fix from $1,9502026-05-13 MEDIUM 6.5 CVE-2026-0249 Multiple improper certificate validation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enables an attacker to intercept encrypted comm… Globalprotect 6.0.13 / 6.0.14+ Fix from $1,6002026-05-13 HIGH 8.1 CVE-2026-0244 An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate… Prisma Sd Wan 6.3.6 / 6.4.3+ Fix from $1,9502026-05-13 HIGH 7.8 CVE-2026-0246 A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrati… Prisma Access Agent 26.2.1+ Fix from $1,9502026-05-13 HIGH 7.8 CVE-2026-0247 Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication c… Prisma Access Agent 26.2.1+ Fix from $1,9502026-05-13 MEDIUM 5.9 CVE-2026-0248 An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-mi… Prisma Access Agent 26.2.1+ Fix from $1,6002026-05-13 MEDIUM 5.5 CVE-2026-0245 Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. … Prisma Access Agent 26.2.1+ Fix from $1,6002026-05-13 HIGH 8.7 CVE-2026-0240 An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the ser… Trust Protection Foundation 24.1.13 / 24.3.6+ Fix from $1,9502026-05-13 HIGH 7.8 CVE-2026-0236 A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its AppleScript interface allowing… Prisma Browser 146.10.7.154+ Fix from $1,9502026-05-13 HIGH 7.2 CVE-2026-0241 Incorrect Authorization vulnerabilities in Trust Protection Foundation allow attackers to bypass access controls and perform unauthorized actions on … Trust Protection Foundation 24.1.13 / 24.3.6+ Fix from $1,9502026-05-13 MEDIUM 6.5 CVE-2026-0239 An information disclosure vulnerability in the Chronosphere Chronocollector enables an unauthenticated attacker with network access to the collector … Chronosphere Collector 0.116.0+ Fix from $1,6002026-05-13 CRITICAL 9.8 CVE-2026-0263 A buffer overflow vulnerability in the IKEv2 processing of Palo Alto Networks PAN-OS® software allows an unauthenticated network-based attacker to ex… Pan Os 11.1.4 / 11.1.6+ Fix from $2,3002026-05-13 CRITICAL 9.8 CVE-2026-0264 A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker wi… Pan Os 10.2.7 / 10.2.10+ Fix from $2,3002026-05-13 HIGH 8.1 CVE-2026-0265 An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authe… Pan Os 10.2.7 / 10.2.10+ Fix from $1,9502026-05-13 HIGH 7.8 CVE-2026-0237 An improper protection of alternate path vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to an interna… Prisma Browser 146.16.6.165+ Fix from $1,9502026-05-13 CRITICAL 9.8 CVE-2026-0300 KEVEPSS 32% A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un… Pan Os Mitigation only Fix from $2,3002026-05-06 CRITICAL 9.1 CVE-2026-0234 An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during integration of Microsoft T… Cortex Xsiam 1.5.52+ Fix from $2,3002026-04-13 HIGH 8.8 CVE-2026-0233 A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an unauthenticated attacker with… Autonomous Digital Experience Manager 5.10.14+ Fix from $1,9502026-04-13 HIGH 7.5 CVE-2026-0227 A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to the firewall. Repeate… Pan Os 10.1.14 / 10.2.7+ Fix from $1,9502026-01-15 HIGH 7.2 CVE-2025-4615 An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables an authenticated ad… Pan Os 10.2.17 / 11.1.11+ Fix from $1,9502025-10-09 HIGH 8.8 CVE-2025-4232 An improper neutralization of wildcards vulnerability in the log collection feature of Palo Alto Networks GlobalProtect™ app on macOS allows a non ad… Globalprotect 6.2.8 / 6.3.3+ Fix from $1,9502025-06-13 HIGH 7.2 CVE-2025-4231 A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. Th… Pan Os 10.2.8 / 11.0.3+ Fix from $1,9502025-06-13 HIGH 7.5 CVE-2025-0130 A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated attacker to send a burs… Pan Os 11.1.6 / 11.2.5+ Fix from $1,9502025-05-14