CVE-2025-0122: Palo Alto Networks Prisma SD-WAN

Medium severity, CVSS 5.1. EPSS: 0.3% chance of exploitation in the next 30 days.

A denial-of-service (DoS) vulnerability in Palo Alto Networks Prisma® SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to disrupt the packet processing capabilities of the device by sending a burst of crafted packets to that device.

Affected products

  • Palo Alto Networks Prisma SD-WAN: from 6.5.0, before 6.5.1 (fixed in 6.5.1); from 6.4.0, before 6.4.2 (fixed in 6.4.2); from 6.3.0, before 6.3.4 (fixed in 6.3.4); version 6.2.0 only; from 6.1.0, before 6.1.10 (fixed in 6.1.10)

Published 2025-04-11. Last modified 2026-06-17.