CVE-2026-0284Critical· 9.9▾ MidnightAn XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to informatio…
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 54.5 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 13.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to information disclosure or corruption of internal LSVPN satellite data.
Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
pan-os >= 10.2.0, < 10.2.7pan-os >= 10.2.8, < 10.2.10pan-os >= 10.2.11, < 10.2.13pan-os >= 10.2.14, < 10.2.16pan-os = 10.2.7pan-os = 10.2.10pan-os = 10.2.13pan-os = 10.2.16pan-os = 10.2.17pan-os = 10.2.18pan-os >= 11.1.0, < 11.1.4pan-os >= 11.1.8, < 11.1.10pan-os >= 11.1.11, < 11.1.13pan-os >= 11.1.14, < 11.1.16pan-os = 11.1.4pan-os = 11.1.5pan-os = 11.1.6pan-os = 11.1.10pan-os = 11.1.13pan-os >= 11.2.0, < 11.2.4pan-os >= 11.2.5, < 11.2.7pan-os >= 11.2.8, < 11.2.10pan-os >= 11.2.11, < 11.2.13pan-os = 11.2.4pan-os = 11.2.7pan-os = 11.2.10pan-os >= 12.1.2, < 12.1.4pan-os >= 12.1.5, < 12.1.7pan-os = 12.1.4pan-os = 12.1.7Upgrade past the affected range:
pan-os 12.1.7Connected by shared product, vendor, weakness, or advisory.
CVE-2019-1579High· 8.1Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalProtect Gateway Interface enabled may allow an unauthenticated remote attacker to execute a…
CVE-2024-9474High· 7.2A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access a…
CVE-2024-0012Critical· 9.8An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with…
CVE-2026-0286High· 7.2A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root. The security risk posed by this issue is significantly m…
CVE-2026-0285Medium· 4.9A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the firewall to intern…
CVE-2026-0283High· 7.2An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized site-to-site VPN …