Information Disclosure in PAN-OS URL Filtering by Palo Alto Networks
CVE-2026-0301

0.5LOW

Key Information:

Vendor
CVE Published:
13 August 2026

Badges

👾 Exploit Exists

What is CVE-2026-0301?

An information disclosure vulnerability exists in the URL Filtering feature of Palo Alto Networks PAN-OS software. This issue allows an unauthenticated user with network access to gain sensitive information. It's essential for users to assess their exposure and take appropriate security measures.

Affected Version(s)

Cloud NGFW AWS All

PAN-OS 11.1.0 < 11.1.17

PAN-OS 10.2.0 < 10.2.8

References

CVSS V4

Score:
0.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jan Breig
.