CVE-2026-0233: Palo Alto Networks Autonomous Digital Experience Manager

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an unauthenticated attacker with adjacent network access to execute arbitrary code with NT AUTHORITY\SYSTEM privileges.

Affected products

  • Palo Alto Networks Autonomous Digital Experience Manager: from 5.10.0, before 5.10.14 (fixed in 5.10.14)

Published 2026-04-13. Last modified 2026-07-07.