Known Vulnerabilities for Networks by Palo Alto

Listed below are 1 of the newest known vulnerabilities associated with "Networks" by "Palo Alto".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-104440 json YesWiki before 4.6.7 contains a blind server-side request forgery vulnerability that allows unauthenticated attackers to make... Not Provided 2026-10-02 2026-10-02
CVE-2026-101883 json OpenClaw Windows Node through 2026.9.4 contains a server-side request forgery vulnerability in the canvas.present capability ... Not Provided 2026-09-30 2026-10-02
CVE-2026-100868 json Penpot before 2.18.0 binds the MCP server plugin WebSocket bridge to all network interfaces without authentication in single-... Not Provided 2026-09-27 2026-09-28
CVE-2026-100373 json OpenMetadata through 2.0.2 contains a server-side request forgery vulnerability in the URLValidator.validateURL function that... Not Provided 2026-09-25 2026-09-25
CVE-2026-97227 json The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.4.8 does not perform capability or ownership checks on... Not Provided 2026-09-27 2026-09-28
CVE-2026-92719 json Quickwit through 0.9.0 fails to validate the host and scheme of the queue_url parameter in SQS file sources, allowing attacke... Not Provided 2026-09-16 2026-09-24
CVE-2026-92569 json Hippo4j through 1.5.0 contains a server-side request forgery vulnerability in four ThreadPoolController endpoints that fail t... Not Provided 2026-09-16 2026-09-24
CVE-2026-90823 json FatPipe MPVPN, WARP, and IPVPN appliances running the end-of-life firmware version 10.1.2r60p100 contain a stack-based buffer... Not Provided 2026-09-17 2026-09-17
CVE-2026-90822 json FatPipe MPVPN, WARP, and IPVPN appliances running the end-of-life firmware version 10.1.2r60p100 contain an OS command inject... Not Provided 2026-09-17 2026-09-17
CVE-2026-89089 json A SQL injection vulnerability exists in the JasperReports-based reporting feature of multiple versions of OpenNMS Meridian an... Not Provided 2026-09-10 2026-09-11

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report