VendorsPalo Alto Networkspan-os11.2.11
Vulnerabilities

Palo Alto Networks paloaltonetworks pan-os 11.2.11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2026-0300
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Published 2026-05-06 · Analyzed
9.8KEVEPSS 0.317
CVE-2026-0264
PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
Published 2026-05-13 · Analyzed
9.8EPSS 0.005
CVE-2026-0263
PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
Published 2026-05-13 · Analyzed
9.8EPSS 0.004
CVE-2026-0257
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Published 2026-05-13 · Analyzed
9.1KEVEPSS 0.964
CVE-2026-0258
PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
Published 2026-05-13 · Analyzed
9.1EPSS 0.003
CVE-2026-0259
WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
Published 2026-05-13 · Analyzed
8.8EPSS 0.003
CVE-2026-0265
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Published 2026-05-13 · Analyzed
8.1EPSS 0.011
CVE-2026-0262
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
Published 2026-05-13 · Analyzed
7.5EPSS 0.004
CVE-2026-0261
PAN-OS: Authenticated Admin Command Injection Vulnerability
Published 2026-05-13 · Analyzed
7.2EPSS 0.014
CVE-2026-0273
PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
Published 2026-06-10 · Modified
7.2EPSS 0.013
CVE-2026-0256
PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface
Published 2026-05-13 · Analyzed
4.8EPSS 0.002