CVE-2019-1565: Palo Alto Networks PAN-OS
Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.
The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allow an attacker that is authenticated in Next Generation Firewall with write privileges to External Dynamic List configuration to inject arbitrary JavaScript or HTML.
Affected products
- Palo Alto Networks PAN-OS: up to and including 7.1.21; from 7.1.22, up to and including 8.0.14; from 8.0.15, up to and including 8.1.5
Published 2019-01-30. Last modified 2026-06-17.