Palo Alto Security Updates – 09 July 2026

Palo Alto has released security updates to address several vulnerabilities affecting multiple Palo Alto products.

The addressed vulnerabilities could allow the attacker to conduct denial-of-service (DoS) attacks, trigger data corruption, perform server-side request forgery (SSRF), cross-site scripting (XSS), and man-in-the-middle (MitM) attacks, gain elevated privileges, bypass security restrictions, obtain sensitive information, manipulate files, or execute arbitrary OS commands, and gain access to the affected products.

Sample of the addressed vulnerabilities:

1. PAN-OS: Buffer Overflow in User-ID Terminal Server Agent Vulnerability (CVE-2026-0288):

  • CVSS: 7.2
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial of Service

2. PAN-OS: Authenticated Command Injection in CLI Vulnerability (CVE-2026- 0286):

  • CVSS: 6.0
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: High
  • User Interaction: None
  • Consequences: Gain Access

The affected products:

  • PAN-OS.
  • Prisma Access Agent.
  • Cortex XDR Broker VM.
  • Cloud NGFW.
Vulnerabilities
  • CVE-2026-0276
  • CVE-2026-0277
  • CVE-2026-0278
  • CVE-2026-0279
  • CVE-2026-0280
  • CVE-2026-0281
  • CVE-2026-0282
  • CVE-2026-0283
  • CVE-2026-0284
  • CVE-2026-0285
  • CVE-2026-0286
  • CVE-2026-0287
  • CVE-2026-0288
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Palo Alto Security Advisory

References