Palo Alto warns of critical firewall flaw, tells users patch is on the way



  • A critical buffer overflow flaw (CVE‑2026‑0300) in the PAN‑OS User ID Authentication Portal is under limited exploitation
  • Bug allows unauthenticated code execution with root privileges on exposed firewalls
  • Palo Alto recommended restricting portals to trusted networks; fixes expire May 13, 2026

The PAN-OS User ID Authentication Portal, a feature of Palo Alto Networks firewalls that identifies and authenticates users on a network, contains a critical severity zero-day vulnerability that is being exploited in limited attacks, the company warned.

The bug is described as a buffer overflow weakness that allows unauthenticated threat actors to execute arbitrary code with root privileges on PA and VM series firewalls via specially crafted packets.

Leave a Comment

Your email address will not be published. Required fields are marked *