Browse all 307 CVE security advisories affecting Palo Alto Networks. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Palo Alto Networks operates as a prominent cybersecurity vendor, primarily providing next-generation firewalls, cloud security solutions, and endpoint protection platforms to enterprise clients. The company’s software ecosystem, particularly its PAN-OS operating system, has historically been associated with a significant volume of Common Vulnerabilities and Exposures, currently totaling 280 recorded instances. These vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from input validation errors or improper access controls within management interfaces. While the firm maintains a robust security posture through regular patching cycles and proactive threat intelligence integration, the high CVE count reflects the complexity of its extensive feature set and the broad attack surface inherent in critical infrastructure components. Major incidents have been limited, with most issues resolved via timely updates, though the sheer number of disclosed flaws underscores the challenges of securing large-scale, continuously updated network security appliances.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-5906 | Prisma Cloud Compute: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface — Prisma Cloud ComputeCWE-79 | 4.8AI | MediumAI | 2024-06-12 |
| CVE-2021-3043 | Prisma Cloud: Cross-Site Scripting (XSS) Vulnerability in Prisma Cloud Compute Web Console — Prisma Cloud ComputeCWE-79 | 7.5 | High | 2021-07-15 |
| CVE-2021-3039 | Prisma Cloud Compute: User role authorization secret for Console leaked through log file export — Prisma Cloud ComputeCWE-532 | 3.8 | Low | 2021-06-10 |
| CVE-2021-3033 | Prisma Cloud Compute: SAML Authentication Bypass Vulnerability in Console — Prisma Cloud ComputeCWE-347 | 9.1 | Critical | 2021-02-10 |
This page lists every published CVE security advisory associated with Palo Alto Networks. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.