Palo Alto Networks has issued patches to address 13 vulnerabilities affecting its products, including some that could allow attackers to execute arbitrary code or cause a denial-of-service (DoS) condition. The most severe of these flaws, CVE-2026-0288, is a high-severity issue in the PAN-OS software used by Palo Alto’s firewalls.
According to security firm Palo Alto Networks, an unauthenticated attacker with network access to the targeted firewall can cause a DoS condition and potentially execute arbitrary code using specially crafted network traffic. While the risk of exploitation is mitigated when organizations follow best practices and limit access to the User-ID Terminal Server Agent (TSA) to trusted internal IP addresses, the vulnerability still poses a significant threat.
The 13 vulnerabilities span multiple products, including PAN-OS, Prisma Access Agent, and others. Seven of these flaws have been rated as medium severity, with five affecting PAN-OS and allowing attackers to execute arbitrary OS commands as root, make unauthorized requests from the firewall to internal services, obtain information, or bypass authentication. The remaining two medium-severity vulnerabilities impact Prisma Access Agent and can be exploited for man-in-the-middle (MitM) attacks that enable VPN traffic interception and bypassing of data loss prevention (DLP) policy enforcement controls.
In addition to these issues, five vulnerabilities have been assigned a low severity rating but carry a moderate urgency rating. They allow privilege escalation, code execution via cross-site scripting (XSS) attacks, firewall policy bypassing, file deletion, or information disclosure. While Palo Alto Networks has stated that it is not aware of any attacks exploiting these vulnerabilities, the company’s products are frequently targeted by threat actors, making timely patch installation crucial.
Palo Alto Networks’ use of artificial intelligence (AI) in its vulnerability discovery process has contributed to a surge in internal vulnerability identification. This highlights the importance of leveraging advanced technologies to stay ahead of emerging threats and prevent potential attacks.
As always, it is essential for organizations using Palo Alto Networks products to install the latest patches as soon as possible. By doing so, they can minimize their exposure to these vulnerabilities and ensure the security and integrity of their systems.
Source: SecurityWeek — 2026-07-09