Vulnerability index

Browse CVEs

301 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Prisma Access Agent HIGH 7.8
CVE-2026-0278

Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP p…

Fix: 26.2.1+
Fix from $1,950 2026-07-09
Cortex Xdr Broker Vm HIGH 7.8
CVE-2026-0276

A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root …

Fix: 31.0.58+
Fix from $1,950 2026-07-09
Prisma Browser MEDIUM 6.7
CVE-2026-0275

A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administrator with access to the macO…

Fix: 149.10.3.53+
Fix from $1,600 2026-07-09
Prisma Access Agent MEDIUM 5.9
CVE-2026-0277

An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack…

Fix: 26.2.1+
Fix from $1,600 2026-07-09
Cloud Ngfw HIGH 7.5
CVE-2026-0287

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a de…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-09
Pan Os HIGH 7.2
CVE-2026-0286

A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute ar…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-09
Pan Os CRITICAL 9.9
CVE-2026-0284

An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacke…

Fix: 10.2.7 / 10.2.10+
Fix from $2,300 2026-07-09
Pan Os HIGH 7.2
CVE-2026-0283

An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with networ…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-09
Pan Os MEDIUM 6.5
CVE-2026-0282

A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web in…

Fix: 11.1.16 / 11.2.13+
Fix from $1,600 2026-07-09
Pan Os HIGH 7.2
CVE-2026-0280

An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewal…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-09
Pan Os HIGH 7.1
CVE-2026-0281

An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the managem…

Fix: 11.1.16 / 11.2.13+
Fix from $1,950 2026-07-09
Pan Os MEDIUM 6.1
CVE-2026-0279

Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Portal) service, GlobalProtect™ gateway/portal featu…

Fix: 11.1.16 / 11.2.13+
Fix from $1,600 2026-07-09
Pan Os HIGH 7.5
CVE-2026-0288

Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthen…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-08
Idira Privileged Access Manager Vault HIGH 8.6
CVE-2026-45169

Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a validation vulnerability. Unde…

Fix: 14.0.8 / 14.2.7+
Fix from $1,950 2026-06-12
Idira Privilege Cloud Connector HIGH 8.8
CVE-2026-45170

Idira Vendor PAM - Self-Hosted Connector versions prior 1.1.100504 under specific conditions and configuration scenarios, TLS certificate validation …

Fix: 1.1.100504+
Fix from $1,950 2026-06-12
Idira Privileged Session Manager HIGH 8.8
CVE-2026-45171

Incomplete input validation and improperly configured folder permissions within Idira Privileged Session Manager (PSM) versions prior to 15.0.3, 14.6…

Fix: 14.0.5 / 14.2.5+
Fix from $1,950 2026-06-11
Idira Privileged Session Manager For Ssh HIGH 8.8
CVE-2026-45172

Due to incomplete input validation in Idira Privileged Session Manager for SSH (PSMP) versions prior to 15.0.2, 14.6.3, 14.2.5, and 14.0.6, an authen…

Fix: 14.0.6 / 14.2.5+
Fix from $1,950 2026-06-11
Idira Endpoint Privilege Manager HIGH 7.8
CVE-2026-45174

Idira Endpoint Privilege Manager Linux Agent versions prior to 26.5 allow a local attacker to potentially compromise the agent daemon initialization.…

Fix: 26.5.0+
Fix from $1,950 2026-06-11
Idira Identity Browser Extension MEDIUM 6.5
CVE-2026-45173

Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation flaw within its internal we…

Fix: 26.8.1+
Fix from $1,600 2026-06-11
Idira Endpoint Privilege Manager HIGH 7.8
CVE-2026-45175

Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within internal agent validation processes. A local att…

Fix: 26.5.0+
Fix from $1,950 2026-06-11
Idira Secrets Manager HIGH 8.1
CVE-2026-45178

Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints. A remote, authenticate…

Fix: 13.8.1 / 14.2.6+
Fix from $1,950 2026-06-11
Idira Secrets Manager Edge CRITICAL 9.1
CVE-2026-45177

Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication components. A remote, unauth…

Fix: 1.8+
Fix from $2,300 2026-06-11
Idira Endpoint Privilege Manager HIGH 7.8
CVE-2026-45176

Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-p…

Fix: 26.5.0+
Fix from $1,950 2026-06-11
Cortex Xsiam Commvaultsecurityiq Marketplace CRITICAL 9.1
CVE-2026-0274

An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticate…

Mitigation only
Fix from $2,300 2026-06-10
Prisma Access Agent HIGH 7.8
CVE-2026-0271

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code wit…

Fix: 26.2.1+
Fix from $1,950 2026-06-10
Pan Os HIGH 7.2
CVE-2026-0272

A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allows an authenticated administrator with access to the Command Line Int…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-06-10
Pan Os HIGH 7.2
CVE-2026-0273

A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-06-10
Cortex Xsoar HIGH 7.5
CVE-2026-0270

A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenticated attacker on an adjacent…

Fix: 8.13.0.11+
Fix from $1,950 2026-06-10
Pan Os MEDIUM 5.7
CVE-2026-0269

A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate…

Fix: 10.2.7 / 10.2.10+
Fix from $1,600 2026-06-10
Globalprotect MEDIUM 5.5
CVE-2026-0267

An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for…

Fix: 6.2.8 / 6.3.3+
Fix from $1,600 2026-06-10