Pan-os
This hub aggregates every CVE we track for Pan-os, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
251
CVEs tracked
39
Critical
93
High
14
In CISA KEV
Severity distribution
MEDIUM107HIGH93CRITICAL39LOW12
Monthly trend
3
1
4
2
10
1
5
3
3
6
4
3
0
1
0
2
1
0
1
2
0
0
9
1
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Pan-os.
- CVE-2026-0273PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI7.2
- CVE-2026-0256PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface5.2
- CVE-2026-0257PAN-OS: GlobalProtect Authentication Bypass VulnerabilitiesKEV9.1
- CVE-2026-0258PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching8.2
- CVE-2026-0261PAN-OS: Authenticated Admin Command Injection Vulnerability7.2
- CVE-2026-0262PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing7.5
- CVE-2026-0263PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing9.0
- CVE-2026-0264PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution9.0
- CVE-2026-0265PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled9.8
- CVE-2026-0300PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication PortalKEV9.8
- CVE-2026-0229PAN-OS: Denial of Service in Advanced DNS Security Feature7.5
- CVE-2026-0228PAN-OS: Improper Validation of Terminal Server Agent Certificate4.3
- CVE-2026-0227PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal7.5
- CVE-2025-4619PAN-OS: Firewall Denial of Service (DoS) Using Specially Crafted Packets4.3
- CVE-2025-4615PAN-OS: Improper Neutralization of Input in the Management Web Interface7.2
Product normalization is registry-driven with AI assist and human review. How it works