Authentication Bypass Vulnerability in Palo Alto Networks PAN-OS Software
CVE-2026-0265

2.7LOW

Key Information:

Vendor
CVE Published:
13 May 2026

Badges

๐Ÿ“ˆ Trended๐Ÿ“ˆ Score: 6,150๐Ÿ‘พ Exploit Exists

What is CVE-2026-0265?

CVE-2026-0265 is a significant authentication bypass vulnerability found in Palo Alto Networks PAN-OSยฎ software, which is integral to the operation of PA-Series and VM-Series firewalls, as well as Panorama management systems. This vulnerability allows an unauthenticated attacker with network access, particularly when the Cloud Authentication Service (CAS) is enabled on the management interface, to circumvent authentication controls. This can lead to unauthorized access to the management functionalities of the firewall, which could severely compromise network security and integrity, allowing attackers to manipulate settings or extract sensitive data. The risk varies depending on the deployment configuration, being heightened when CAS is enabled on critical management access points without proper restrictions.

Potential impact of CVE-2026-0265

  1. Unauthorized Access: Exploiting this vulnerability allows attackers to gain unauthorized control over firewall configurations, potentially leading to full administrative access and manipulation of network security measures.

  2. Data Exposure: With compromised authentication controls, attackers may access sensitive information traversing the firewall, which could lead to data breaches involving confidential corporate or personal data.

  3. Network Compromise: If an attacker successfully exploits this vulnerability, they could set the stage for further intrusions into the internal network, enabling additional malicious activities, including the deployment of malware or ransomware payloads.

Affected Version(s)

PAN-OS 12.1.0 < 12.1.7, 12.1.4-h5

PAN-OS 11.2.0 < 11.2.12, 11.2.10-h6, 11.2.7-h13, 11.2.4-h17

PAN-OS 11.1.0 < 11.1.15, 11.1.13-h5, 11.1.10-h25, 11.1.7-h6, 11.1.6-h32, 11.1.4-h33

References

CVSS V4

Score:
2.7
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐Ÿ“ˆ

    Vulnerability started trending

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Palo Alto Networks thanks Harsh Jaiswal from Hacktron AI and our internal security research teams for discovering and reporting this issue.
.