Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3477 articles · 182402 vulns · 37/41 feeds (7d)
← Back to list
7.5
CVE-2026-0265PATCHED
Palo Alto Networks · Cloud NGFW

PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled

Description

An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled. The risk is higher if CAS is enabled on the management interface and lower when any other login interfaces are used. The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma Access® are not impacted by this vulnerability.

Affected Products

VendorProductVersions
Palo Alto NetworksCloud NGFW12.1.0, 11.2.0, 11.1.0, 10.2.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
palo alto networkspan-osmitre_affected90%
palo alto networksprisma accessmitre_affected90%

References

  • https://security.paloaltonetworks.com/CVE-2026-0265(vendor-advisory)

Related News (6 articles)

Tier C
Rapid7 Blog8d ago
What’s New in Rapid7 Products and Services: Q2 2026 in Review
→ No new info (linked only)
Tier B
BSI Advisories76d ago
[NEU] [hoch] Palo Alto Networks PAN-OS: Mehrere Schwachstellen
→ No new info (linked only)
Tier B
CERT-FR76d ago
Multiples vulnérabilités dans les produits Palo Alto Networks (15 mai 2026)
→ No new info (linked only)
Tier C
Rapid7 Blog76d ago
CVE-2026-0265: Authentication Bypass in Palo Alto Networks PAN-OS
→ No new info (linked only)
Tier C
VulDB77d ago
CVE-2026-0265 | Palo Alto Cloud NGFW/PAN-OS/Prisma Access Management Interface signature verification
→ No new info (linked only)
Tier B
CCCS Canada77d ago
Palo Alto Networks security advisory (AV26-462)
→ No new info (linked only)
CVSS 3.17.5 NONE
CISA KEV❌ No
Actively exploited❌ No
Patch available
All12.1.712.1.4-h511.2.1211.2.10-h611.2.7-h1311.2.4-h1711.1.1511.1.13-h511.1.10-h2511.1.7-h611.1.6-h3211.1.4-h3310.2.18-h610.2.16-h710.2.13-h2110.2.10-h3610.2.7-h34
CWECWE-347
PublishedMay 13, 2026
Last enriched77d agov2
Trending Score18
Source articles6
Independent5
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-0300EXP
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Trending: 110
NONECVE-2026-0257EXP
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Trending: 41
NONECVE-2026-0288
PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
Trending: 17
CRITICALCVE-2026-0284EXP
PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
Trending: 3
NONECVE-2026-0275
Prisma Browser: Local Privilege Escalation on macOS
Trending: 2

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 13, 2026
Discovered by ZDM
May 13, 2026
Updated: affectedVersions, cvssEstimate
May 13, 2026
Patch Available
Jul 14, 2026

Version History

v2
Last enriched 77d ago
v2Tier B77d ago

Updated affected versions, severity to HIGH, CVSS estimate to 7.5, and marked the vulnerability as actively exploited with an exploit available.

affectedVersionscvssEstimate
via CCCS Canada
v177d ago

Initial creation