Information Disclosure in PAN-OS URL Filtering by Palo Alto Networks
CVE-2026-0301
0.5LOW
What is CVE-2026-0301?
An information disclosure vulnerability exists in the URL Filtering feature of Palo Alto Networks PAN-OS software. This issue allows an unauthenticated user with network access to gain sensitive information. It's essential for users to assess their exposure and take appropriate security measures.
Affected Version(s)
Cloud NGFW AWS All
PAN-OS 11.1.0 < 11.1.17
PAN-OS 10.2.0 < 10.2.8
References
CVSS V4
Score:
0.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Jan Breig