CVE-2026-0239: Palo Alto Networks Chronosphere Collector
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An information disclosure vulnerability in the Chronosphere Chronocollector enables an unauthenticated attacker with network access to the collector service to retrieve sensitive information.
Affected products
- Palo Alto Networks Chronosphere Collector: before 0.116.0 (fixed in 0.116.0)
Published 2026-05-13. Last modified 2026-07-13.