Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.0
CVE-2025-0120
A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated …
Globalprotect
6.0.12 / 6.2.7-1077+
HIGH 8.0
CVE-2025-0118
A vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a remote attacker to run ActiveX controls within the context of an auth…
Globalprotect
6.0.11 / 6.1.6+
HIGH 7.5
CVE-2025-0114
A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to ren…
Pan Os
10.1.14 / 10.2.5+
CRITICAL 9.1
CVE-2025-0108 KEVEPSS 98%
An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web inte…
Pan Os
10.1.14 / 10.2.7+
MEDIUM 6.5
CVE-2025-0111 KEV
An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the manag…
Pan Os
10.1.14 / 10.2.7+
CRITICAL 9.8
CVE-2025-0107EPSS 79%
An OS command injection vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to run arbitrary OS commands as the www-da…
Expedition
1.2.101+
CRITICAL 9.1
CVE-2025-0105EPSS 13%
An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to delete arbitrary files accessible to…
Expedition
1.2.101+
HIGH 8.8
CVE-2025-0103
An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as pas…
Expedition
1.2.101+
MEDIUM 6.1
CVE-2025-0104
A reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks Expedition enables attackers to execute malicious JavaScript code in the c…
Expedition
1.2.101+
MEDIUM 5.3
CVE-2025-0106
A wildcard expansion vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to enumerate files on the host filesystem.
Expedition
1.2.101+
HIGH 7.5
CVE-2024-3393 KEVEPSS 29%
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a mali…
Pan Os
11.2.3+
HIGH 8.8
CVE-2024-5921
An insufficient certification validation issue in the Palo Alto Networks GlobalProtect app enables attackers to connect the GlobalProtect app to arbi…
Globalprotect
6.1.6 / 6.1.7+
HIGH 7.2
CVE-2024-9474 KEVEPSS 95%
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface …
Pan Os
10.1.14 / 10.2.12+
CRITICAL 9.8
CVE-2024-0012 KEVEPSS 100%
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac…
Pan Os
Mitigation only
MEDIUM 6.5
CVE-2024-5919
A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate…
Pan Os
10.1.10 / 10.2.5+
HIGH 7.5
CVE-2024-2550
A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to st…
Pan Os
10.2.7 / 11.0.6+
HIGH 7.5
CVE-2024-2551
A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop a core system service on t…
Pan Os
10.1.14 / 10.2.4+
MEDIUM 6.0
CVE-2024-2552
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the m…
Pan Os
10.2.7 / 11.0.6+
HIGH 7.8
CVE-2024-9473
A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows…
Globalprotect
6.2.5+
CRITICAL 9.1
CVE-2024-9465 KEVEPSS 100%
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as pa…
Expedition
1.2.96+
HIGH 7.5
CVE-2024-9468
A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-OS due to a crafted packet th…
Pan Os
10.2.4 / 10.2.7+
MEDIUM 6.5
CVE-2024-9464EPSS 82%
An OS command injection vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to run arbitrary OS commands as root in Exped…
Expedition
1.2.96+
MEDIUM 6.5
CVE-2024-9466EPSS 13%
A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to reveal firewall usern…
Expedition
1.2.96+
MEDIUM 6.1
CVE-2024-9467
A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expeditio…
Expedition
1.2.96+
MEDIUM 5.5
CVE-2024-9469
A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative pri…
Cortex Xdr Agent
7.9.102+
HIGH 7.5
CVE-2024-9463 KEVEPSS 98%
An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Exp…
Expedition
1.2.96+
HIGH 7.2
CVE-2024-8686
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions and run …
Pan Os
after 11.2.2
HIGH 7.1
CVE-2024-8687
An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn both the configured…
Pan Os
5.1.12 / 5.2.13+
HIGH 7.1
CVE-2024-8691
A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect user to impersonate…
Pan Os
9.1.17 / 10.1.11+
CRITICAL 9.8
CVE-2024-5914
A command injection issue in Palo Alto Networks Cortex XSOAR CommonScripts Pack allows an unauthenticated attacker to execute arbitrary commands with…
Cortex Xsoar Commonscripts
1.12.33+