CVE-2025-0127: Palo Alto Networks Cloud Ngfw
High severity, CVSS 7.1. EPSS: 0.6% chance of exploitation in the next 30 days.
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. This issue is only applicable to PAN-OS VM-Series. This issue does not affect firewalls that are already deployed. Cloud NGFW and Prisma® Access are not affected by this vulnerability.
Affected products
- Palo Alto Networks Cloud Ngfw
- Palo Alto Networks PAN-OS: from 11.0.0, before 11.0.4 (fixed in 11.0.4); from 10.2.0, before 10.2.9 (fixed in 10.2.9); from 10.1.0, before 10.1.14-h13 (fixed in 10.1.14-h13)
- Palo Alto Networks Prisma Access
Published 2025-04-11. Last modified 2026-06-17.