CVE-2026-0310: Palo Alto Networks Cloud Ngfw

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

A buffer overflow vulnerability in the XML processing functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web or dataplane interface to cause a denial of service (DoS) condition on VM-Series firewalls or execute arbitrary code with root privileges on the PA-Series firewalls. The security risk posed by this issue is minimized when the management interface is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . Panorama is impacted by this vulnerability.

Affected products

  • Palo Alto Networks Cloud Ngfw: any version
  • Palo Alto Networks PAN-OS: from 12.2.0, before 12.2.3 (fixed in 12.2.3); from 12.1.0, before 12.1.4-h10 (fixed in 12.1.4-h10); from 11.2.0, before 11.2.4-h21 (fixed in 11.2.4-h21); from 11.1.0, before 11.1.4-h36 (fixed in 11.1.4-h36); from 10.2.0, before 10.2.7-h37 (fixed in 10.2.7-h37)
  • Palo Alto Networks Prisma Access: from 11.2.0, before 11.2.4-h21 (fixed in 11.2.4-h21); from 10.2.0, before 10.2.7-h37 (fixed in 10.2.7-h37)

Published 2026-09-10. Last modified 2026-09-11.