Security.Paloaltonetworks Multiple Vulnerabilities in Palo Alto Networks PAN-OS Disclosed
Article Content
- •CVE-2026-0288 allows unauthenticated attackers to exploit buffer overflow vulnerabilities.
- •CVE-2026-0280 enables bypassing firewall security policies for IPv6 traffic.
- •Palo Alto Networks will upgrade affected systems during scheduled maintenance.
Palo Alto Networks disclosed several vulnerabilities in its PAN-OS software, including CVE-2026-0288, a buffer overflow issue that allows unauthenticated attackers to execute arbitrary code or cause denial of service. Other vulnerabilities include CVE-2026-0280, which enables bypassing firewall security policies, and CVE-2026-0281, which allows information disclosure through the management web interface. The vulnerabilities affect various PAN-OS versions and components, including PA-Series and VM-Series firewalls, with some issues requiring user interaction. Palo Alto Networks is set to upgrade all affected customers during scheduled maintenance, and users are advised to restrict access to trusted internal IP addresses to mitigate risks. No active exploitation has been reported for these vulnerabilities.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (16)
Following this threat?
Track Palo Alto Networks and CVE-2026-0281 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…