Heise.De Palo Alto Networks Addresses Multiple Vulnerabilities in Key Security Products
Article Content
- •Palo Alto Networks patched 11 vulnerabilities across multiple products on August 12, 2026.
- •CVE-2026-0299 is a critical vulnerability with a CVSS score of 9.2, affecting GlobalProtect.
- •No active exploitation of the vulnerabilities has been reported, but immediate patching is recommended.
Palo Alto Networks has patched 11 new vulnerabilities affecting PAN-OS, GlobalProtect, and Prisma Browser. The vulnerabilities include critical issues such as memory errors and privilege escalation, with CVSS scores up to 9.2. Affected systems include the GlobalProtect App for Android, macOS, and Windows. No active exploitation has been reported, but the vulnerabilities could allow attackers to execute malicious code or gain administrative privileges. The most critical vulnerability is CVE-2026-0299, published on August 13, 2026. Administrators are advised to apply the patches to mitigate risks. The security bulletin was released on August 12, 2026, detailing the vulnerabilities and their severity levels. Palo Alto Networks has assured users that the updated Prisma Browser version is now secure.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track CVE-2026-0299 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…