<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 22:02:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-07004</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07004</link>
      <description>bdu:2026-07004</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07004</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0596 — De multiples vulnérabilités ont été découvertes dans les produits Palo Alto Networks. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0596</link>
      <description>certfr-2026-avi-0596</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0596</guid>
    </item>
    <item>
      <title>EUVD-2026-336361</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-336361</link>
      <description>EUVD-2026-336361</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-336361</guid>
    </item>
    <item>
      <title>fkie_cve-2026-0265</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-0265</link>
      <description>&lt;p&gt;An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled.&lt;/p&gt;
&lt;p&gt;The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used.&lt;/p&gt;
&lt;p&gt;The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 .&lt;/p&gt;
&lt;p&gt;This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series).&lt;/p&gt;
&lt;p&gt;Cloud NGFW and Prisma Access® are not impacted by this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled.&lt;/p&gt;
&lt;p&gt;The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used.&lt;/p&gt;
&lt;p&gt;The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 .&lt;/p&gt;
&lt;p&gt;This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series).&lt;/p&gt;
&lt;p&gt;Cloud NGFW and Prisma Access® are not impacted by this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-0265</guid>
    </item>
    <item>
      <title>GHSA-qcp7-r34x-6gv6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qcp7-r34x-6gv6</link>
      <description>&lt;p&gt;An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled.&lt;/p&gt;
&lt;p&gt;The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used.&lt;/p&gt;
&lt;p&gt;The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 .&lt;/p&gt;
&lt;p&gt;This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series).&lt;/p&gt;
&lt;p&gt;Cloud NGFW and Prisma Access® are not impacted by this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled.&lt;/p&gt;
&lt;p&gt;The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used.&lt;/p&gt;
&lt;p&gt;The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 .&lt;/p&gt;
&lt;p&gt;This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series).&lt;/p&gt;
&lt;p&gt;Cloud NGFW and Prisma Access® are not impacted by this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qcp7-r34x-6gv6</guid>
    </item>
    <item>
      <title>ICSA-26-139-02 — Siemens RUGGEDCOM APE1808 Devices</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-139-02</link>
      <description>&lt;p&gt;A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to a dataplane interface A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGFW and Prisma Access) or potentially ex…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to a dataplane interface A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGFW and Prisma Access) or potentially ex…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-139-02</guid>
    </item>
    <item>
      <title>SSA-967325 — SSA-967325: Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
      <link>https://cve.radiocsirt.org/vuln/ssa-967325</link>
      <description>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&amp;#39; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&amp;#39; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ssa-967325</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1528 — Palo Alto Networks PAN-OS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1528</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Palo Alto Networks PAN-OS ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um einen Cross-Site Scripting Angriff durchzuführen und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Palo Alto Networks PAN-OS ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um einen Cross-Site Scripting Angriff durchzuführen und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1528</guid>
    </item>
  </channel>
</rss>
