Information Disclosure Vulnerability in Palo Alto Networks Cortex XDR® Broker VM
CVE-2026-0231
Key Information:
- Vendor
Palo Alto Networks
- Status
- Vendor
- CVE Published:
- 11 March 2026
Badges
What is CVE-2026-0231?
An information disclosure vulnerability exists in Palo Alto Networks Cortex XDR® Broker VM that enables an authenticated user to access and modify sensitive configurations. By initiating a live terminal session through the Cortex UI, the attacker can manipulate settings, potentially compromising the confidentiality and integrity of the system. Network access to the Broker VM is required for exploitation, highlighting the need for robust network security measures to protect sensitive environments.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cortex XDR Broker VM 30.0.0 < 30.0.49
References
CVSS V4
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved