Palo Alto Networks Product Security Update Advisory (CVE-2026-0300)
Overview
Palo Alto Networks has announced a security update that addresses CVE-2026-0300 vulnerability in Palo Alto Networks products. the vulnerability is a buffer overflow vulnerability in the User-ID Authentication Portal in PAN-OS.
Affected
the following PAN-OS versions are affected
- 12.1.4-h5 and earlier.
- 12.1.7 and earlier.
- 11.2.4-h17 and earlier.
- 11.2.7-h13 and earlier.
- 11.2.10-h6 and earlier.
- less than 11.2.12.
- less than 11.1.4-h33.
- less than 11.1.6-h32.
- less than 11.1.7-h6.
- less than 11.1.10-h25.
- less than 11.1.13-h5.
- less than 11.1.15.
- less than 10.2.7-h34.
- less than 10.2.10-h36.
- less than 10.2.13-h21.
- less than 10.2.16-h7.
- less than 10.2.18-h6.
Response
updating to the latest version of the Vulnerability Patch will resolve the vulnerability. follow the instructions on the reference site to ensure that you are up to the latest version.
Notes
CVE-2026-0300 is labeled as an unauthenticated user initiated Buffer Overflow Vulnerability in the PAN-OS User-ID Authentication Portal.