Palo Alto Networks Product Security Update Advisory (CVE-2026-0300)

Palo Alto Networks Product Security Update Advisory (CVE-2026-0300)

Overview


Palo Alto Networks has announced a security update that addresses CVE-2026-0300 vulnerability in Palo Alto Networks products. the vulnerability is a buffer overflow vulnerability in the User-ID Authentication Portal in PAN-OS.

Affected


the following PAN-OS versions are affected

  • 12.1.4-h5 and earlier.
  • 12.1.7 and earlier.
  • 11.2.4-h17 and earlier.
  • 11.2.7-h13 and earlier.
  • 11.2.10-h6 and earlier.
  • less than 11.2.12.
  • less than 11.1.4-h33.
  • less than 11.1.6-h32.
  • less than 11.1.7-h6.
  • less than 11.1.10-h25.
  • less than 11.1.13-h5.
  • less than 11.1.15.
  • less than 10.2.7-h34.
  • less than 10.2.10-h36.
  • less than 10.2.13-h21.
  • less than 10.2.16-h7.
  • less than 10.2.18-h6.

Response


updating to the latest version of the Vulnerability Patch will resolve the vulnerability. follow the instructions on the reference site to ensure that you are up to the latest version.

Notes


CVE-2026-0300 is labeled as an unauthenticated user initiated Buffer Overflow Vulnerability in the PAN-OS User-ID Authentication Portal.