Known Vulnerabilities for products from Paloaltonetworks
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Paloaltonetworks".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Paloaltonetworks can be found at device.report : Paloaltonetworks
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45178 json | Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45177 json | Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication comp... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45176 json | Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent co... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45175 json | Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within internal agent validatio... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45174 json | Idira Endpoint Privilege Manager Linux Agent versions prior to 26.5 allow a local attacker to potentially compromise the agen... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45173 json | Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation fla... | Not Provided | 2026-06-11 | 2026-06-22 |
| CVE-2026-45172 json | Due to incomplete input validation in Idira Privileged Session Manager for SSH (PSMP) versions prior to 15.0.2, 14.6.3, 14.2.... | Not Provided | 2026-06-11 | 2026-06-23 |
| CVE-2026-45171 json | Incomplete input validation and improperly configured folder permissions within Idira Privileged Session Manager (PSM) versio... | Not Provided | 2026-06-11 | 2026-06-23 |
| CVE-2026-45170 json | Idira Vendor PAM - Self-Hosted Connector versions prior 1.1.100504 under specific conditions and configuration scenarios, TLS... | Not Provided | 2026-06-12 | 2026-06-23 |
| CVE-2026-45169 json | Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a valida... | Not Provided | 2026-06-12 | 2026-07-07 |
| CVE-2026-0310 json | Not Provided | 2026-09-10 | 2026-09-10 | |
| CVE-2026-0301 json | An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® software enables an unaut... | Not Provided | 2026-08-13 | 2026-08-28 |
| CVE-2026-0300 json | A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PA... | Not Provided | 2026-05-06 | 2026-05-12 |
| CVE-2026-0299 json | Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enable a local user to escalate the... | Not Provided | 2026-08-13 | 2026-09-03 |
| CVE-2026-0298 json | An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto ... | Not Provided | 2026-08-13 | 2026-09-10 |
| CVE-2026-0297 json | A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man-in-the-middle (MitM)... | Not Provided | 2026-08-13 | 2026-09-10 |
| CVE-2026-0296 json | Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtect™ app enable an unauthenticated attacker... | Not Provided | 2026-08-13 | 2026-09-10 |
| CVE-2026-0295 json | A race condition in the Palo Alto Networks GlobalProtect™ client on macOS enables a locally authenticated low-privileged at... | Not Provided | 2026-08-13 | 2026-09-10 |
| CVE-2026-0294 json | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Windows and macOS devices en... | Not Provided | 2026-08-13 | 2026-09-09 |
| CVE-2026-0293 json | A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a local attacker with administrator privileges... | Not Provided | 2026-08-13 | 2026-09-09 |
Known software with vulnerabilities from Paloaltonetworks
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Paloaltonetworks | Cortex Xdr Agent | 5.0 |
| Application | Paloaltonetworks | Expedition | 1.0.103 |
| Application | Paloaltonetworks | Expedition Migration Tool | 1.1 |
| Application | Paloaltonetworks | Globalprotect | - |
| Hardware | Paloaltonetworks | M-100 | - |
| Hardware | Paloaltonetworks | M-200 | - |
| Hardware | Paloaltonetworks | M-500 | - |
| Hardware | Paloaltonetworks | M-600 | - |
| Application | Paloaltonetworks | Minemeld | 0.9.60 |
| Application | Paloaltonetworks | Netconnect | - |
| Hardware | Paloaltonetworks | Pa-200 | - |
| Hardware | Paloaltonetworks | Pa-2020 | - |
| Hardware | Paloaltonetworks | Pa-2050 | - |
| Hardware | Paloaltonetworks | Pa-220 | - |
| Hardware | Paloaltonetworks | Pa-220r | - |
| Hardware | Paloaltonetworks | Pa-3020 | - |
| Hardware | Paloaltonetworks | Pa-3050 | - |
| Hardware | Paloaltonetworks | Pa-3060 | - |
| Hardware | Paloaltonetworks | Pa-3220 | - |
| Hardware | Paloaltonetworks | Pa-3250 | - |