paloaltonetworks
34 known vulnerabilities affecting paloaltonetworks products.
Products
pan-os 18
prisma_access_agent 6
globalprotect 6
prisma_browser 2
cloud_ngfw 2
cortex_xsiam_commvaultsecurityiq_marketplace 1
cortex_xsoar 1
cortex_xsoar_commvaultsecurityiq_marketplace 1
prisma_access 1
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2024-0012 | Act now | 99.7% | 9.8 | ● | An authentication bypass in Palo Alto Networks PAN-OS software enables an unauth… |
| CVE-2024-9474 | Act now | 94.7% | 7.2 | ● | A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allow… |
| CVE-2019-1579 | Act now | 46.2% | 8.1 | ● | Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier… |
| CVE-2026-0286 | Medium | 1.7% | 7.2 | A command injection vulnerability in the management plane of Palo Alto Networks … | |
| CVE-2026-0273 | Medium | 1.3% | 7.2 | A command injection vulnerability in Palo Alto Networks PAN-OS® software enables… | |
| CVE-2026-0288 | Medium | 0.8% | 7.5 | Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (T… | |
| CVE-2026-0287 | Medium | 0.6% | 7.5 | Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® softwar… | |
| CVE-2026-0284 | Medium | 0.5% | 9.9 | An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of P… | |
| CVE-2026-0283 | Medium | 0.4% | 7.2 | An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality… | |
| CVE-2026-0298 | Medium | 0.3% | 8.1 | An improper input validation vulnerability exists in the Windows Pre-Logon Acces… | |
| CVE-2026-0301 | Medium | 0.3% | 7.5 | An information disclosure vulnerability in the URL Filtering feature of Palo Alt… | |
| CVE-2026-0280 | Medium | 0.3% | 7.2 | An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks P… | |
| CVE-2026-0297 | Medium | 0.3% | 8.1 | A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ … | |
| CVE-2026-0274 | Medium | 0.3% | 9.1 | An improper validation of credentials vulnerability in the CommvaultSecurityIQ i… | |
| CVE-2026-0281 | Medium | 0.3% | 7.1 | An information disclosure vulnerability in Palo Alto Networks PAN-OS® software e… | |
| CVE-2026-0272 | Medium | 0.3% | 7.2 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allo… | |
| CVE-2026-0299 | Medium | 0.2% | 7.8 | Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProte… | |
| CVE-2026-0270 | Medium | 0.2% | 7.5 | A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine softwar… | |
| CVE-2026-0296 | Medium | 0.1% | 7.4 | Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProt… | |
| CVE-2026-0294 | Medium | 0.1% | 7.8 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Acce… | |
| CVE-2026-0271 | Medium | 0.1% | 7.8 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Acces… | |
| CVE-2026-0295 | Medium | 0.1% | 7.0 | A race condition in the Palo Alto Networks GlobalProtect™ client on macOS enable… | |
| CVE-2026-0279 | Low | 0.6% | 6.1 | Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Por… | |
| CVE-2026-0282 | Low | 0.3% | 6.5 | A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an … | |
| CVE-2026-0285 | Low | 0.2% | 4.9 | A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS … | |
| CVE-2026-0289 | Low | 0.2% | 6.5 | A security bypass vulnerability in the Account Protection feature of Palo Alto … | |
| CVE-2026-0269 | Low | 0.2% | 5.7 | A memory corruption vulnerability in the processing of tunnel traffic in Palo Al… | |
| CVE-2026-0292 | Low | 0.1% | 6.0 | An authentication bypass vulnerability in the network driver of Palo Alto Networ… | |
| CVE-2026-0266 | Low | 0.1% | 4.8 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® softwar… | |
| CVE-2026-0290 | Low | 0.1% | 5.5 | An information disclosure vulnerability in the Account Protection feature of Pa… | |
| CVE-2026-0291 | Low | 0.1% | 4.4 | An improper link resolution before file access vulnerability exists in the Palo … | |
| CVE-2026-0293 | Low | 0.1% | 6.0 | A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a … | |
| CVE-2026-0267 | Low | 0.1% | 5.5 | An information exposure vulnerability in the Palo Alto Networks GlobalProtect ap… | |
| CVE-2026-0268 | Low | 0.1% | 4.4 | A security control bypass vulnerability in Prisma Access Agent for Linux allows … |