Known Vulnerabilities for products from Paloaltonetworks
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Paloaltonetworks".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Paloaltonetworks can be found at device.report : Paloaltonetworks
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45178 json | Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45177 json | Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication comp... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45176 json | Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent co... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45175 json | Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within internal agent validatio... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45174 json | Idira Endpoint Privilege Manager Linux Agent versions prior to 26.5 allow a local attacker to potentially compromise the agen... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45173 json | Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation fla... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45172 json | Due to incomplete input validation in Idira Privileged Session Manager for SSH (PSMP) versions prior to 15.0.2, 14.6.3, 14.2.... | Not Provided | 2026-06-11 | 2026-06-23 |
| CVE-2026-45171 json | Incomplete input validation and improperly configured folder permissions within Idira Privileged Session Manager (PSM) versio... | Not Provided | 2026-06-11 | 2026-06-23 |
| CVE-2026-45170 json | Idira Vendor PAM - Self-Hosted Connector versions prior 1.1.100504 under specific conditions and configuration scenarios, TLS... | Not Provided | 2026-06-12 | 2026-06-23 |
| CVE-2026-45169 json | Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a valida... | Not Provided | 2026-06-12 | 2026-07-07 |
| CVE-2026-0300 json | Not Provided | 2026-05-06 | 2026-05-12 | |
| CVE-2026-0288 json | Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS so... | Not Provided | 2026-07-08 | 2026-07-10 |
| CVE-2026-0287 json | Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with net... | Not Provided | 2026-07-09 | 2026-07-13 |
| CVE-2026-0286 json | A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated ad... | Not Provided | 2026-07-09 | 2026-07-13 |
| CVE-2026-0285 json | A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrat... | Not Provided | 2026-07-09 | 2026-07-13 |
| CVE-2026-0284 json | An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables a... | Not Provided | 2026-07-09 | 2026-07-13 |
| CVE-2026-0283 json | An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows... | Not Provided | 2026-07-09 | 2026-07-13 |
| CVE-2026-0282 json | Not Provided | 2026-07-09 | 2026-07-09 | |
| CVE-2026-0281 json | Not Provided | 2026-07-09 | 2026-07-09 | |
| CVE-2026-0280 json | An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated a... | Not Provided | 2026-07-09 | 2026-07-13 |
Known software with vulnerabilities from Paloaltonetworks
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Paloaltonetworks | Cortex Xdr Agent | 5.0 |
| Application | Paloaltonetworks | Expedition | 1.0.103 |
| Application | Paloaltonetworks | Expedition Migration Tool | 1.1 |
| Application | Paloaltonetworks | Globalprotect | - |
| Hardware | Paloaltonetworks | M-100 | - |
| Hardware | Paloaltonetworks | M-200 | - |
| Hardware | Paloaltonetworks | M-500 | - |
| Hardware | Paloaltonetworks | M-600 | - |
| Application | Paloaltonetworks | Minemeld | 0.9.60 |
| Application | Paloaltonetworks | Netconnect | - |
| Hardware | Paloaltonetworks | Pa-200 | - |
| Hardware | Paloaltonetworks | Pa-2020 | - |
| Hardware | Paloaltonetworks | Pa-2050 | - |
| Hardware | Paloaltonetworks | Pa-220 | - |
| Hardware | Paloaltonetworks | Pa-220r | - |
| Hardware | Paloaltonetworks | Pa-3020 | - |
| Hardware | Paloaltonetworks | Pa-3050 | - |
| Hardware | Paloaltonetworks | Pa-3060 | - |
| Hardware | Paloaltonetworks | Pa-3220 | - |
| Hardware | Paloaltonetworks | Pa-3250 | - |