Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3510 articles · 182400 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-0284EXPLOITEDPATCHED
palo alto networks · pan-os

PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)

Description

An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to information disclosure or corruption of internal LSVPN satellite data. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

Affected Products

VendorProductVersions
palo alto networkspan-os12.1.0, 11.2.0, 11.1.0, 10.2.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
palo alto networkspan-osmitre_affected90%
palo alto networksprisma accessmitre_affected90%

References

  • https://security.paloaltonetworks.com/CVE-2026-0284(vendor-advisory)

Related News (1 articles)

Tier C
VulDB20d ago
CVE-2026-0284 | Palo Alto Cloud NGFW/PAN-OS/Prisma Access LSVPN xml injection
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
All12.1.4-h811.2.4-h2011.1.4-h3510.2.7-h36
CWECWE-74
PublishedJul 9, 2026
Last enriched20d agov2
Trending Score3
Source articles1
Independent1
Info Completeness8/14
Missing: cvss, epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-0300EXP
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Trending: 111
NONECVE-2026-0257EXP
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Trending: 41
NONECVE-2026-0265
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Trending: 18
NONECVE-2026-0288
PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
Trending: 17
HIGHCVE-2026-0286EXP
PAN-OS: Authenticated Command Injection in CLI
Trending: 3

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 9, 2026
Discovered by ZDM
Jul 9, 2026
Actively Exploited
Jul 9, 2026
Patch Available
Jul 9, 2026
Updated: severity, activelyExploited
Jul 9, 2026

Version History

v2
Last enriched 20d ago
v2Tier C20d ago

Updated severity to CRITICAL, marked as actively exploited, and corrected exploit availability to false.

severityactivelyExploited
via VulDB
v120d ago

Initial creation