VendorsPalo Alto Networkspan-os10.2.18
Vulnerabilities

Palo Alto Networks paloaltonetworks pan-os 10.2.18

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19CVEs
CVE-2026-0284
PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
Published 2026-07-09 · Modified
9.9EPSS 0.005
CVE-2026-0300
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Published 2026-05-06 · Analyzed
9.8KEVEPSS 0.317
CVE-2026-0264
PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
Published 2026-05-13 · Analyzed
9.8EPSS 0.005
CVE-2026-0257
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Published 2026-05-13 · Analyzed
9.1KEVEPSS 0.964
CVE-2026-0258
PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
Published 2026-05-13 · Analyzed
9.1EPSS 0.003
CVE-2026-0259
WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
Published 2026-05-13 · Analyzed
8.8EPSS 0.003
CVE-2026-0265
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Published 2026-05-13 · Analyzed
8.1EPSS 0.011
CVE-2026-0288
PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
Published 2026-07-08 · Modified
7.5EPSS 0.008
CVE-2026-0227
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal
Published 2026-01-15 · Analyzed
7.5EPSS 0.007
CVE-2026-0287
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing
Published 2026-07-09 · Modified
7.5EPSS 0.006
CVE-2026-0262
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
Published 2026-05-13 · Analyzed
7.5EPSS 0.004
CVE-2026-0286
PAN-OS: Authenticated Command Injection in CLI
Published 2026-07-09 · Modified
7.2EPSS 0.017
CVE-2026-0261
PAN-OS: Authenticated Admin Command Injection Vulnerability
Published 2026-05-13 · Analyzed
7.2EPSS 0.014
CVE-2026-0273
PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
Published 2026-06-10 · Modified
7.2EPSS 0.013
CVE-2026-0283
PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
Published 2026-07-09 · Modified
7.2EPSS 0.004
CVE-2026-0280
PAN-OS: IPv6 Firewall Policy Bypass
Published 2026-07-09 · Modified
7.2EPSS 0.003
CVE-2026-0272
PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
Published 2026-06-10 · Modified
7.2EPSS 0.003
CVE-2026-0285
PAN-OS: Server-Side Request Forgery Vulnerability in Management Web Interface
Published 2026-07-09 · Modified
4.9EPSS 0.004
CVE-2026-0256
PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface
Published 2026-05-13 · Analyzed
4.8EPSS 0.002