PatchSiren cyber security CVE debrief
CVE-2026-0269 Palo Alto Networks CVE debrief
CVE-2026-0269 is a memory corruption vulnerability in Palo Alto Networks PAN-OS software. An authenticated user can initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. This vulnerability has a CVSS score of 4.6 and is classified as MEDIUM severity. Panorama, Cloud NGFW, and Prisma Access are not impacted by this vulnerability.
- Vendor
- Palo Alto Networks
- Product
- Cloud NGFW
- CVSS
- MEDIUM 4.6
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-06-10
- Original CVE updated
- 2026-06-11
- Advisory published
- 2026-06-10
- Advisory updated
- 2026-06-11
Who should care
Users of Palo Alto Networks PAN-OS software should be aware of this vulnerability and take necessary precautions to prevent exploitation.
Technical summary
A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode.
Defensive priority
MEDIUM
Recommended defensive actions
- Apply patches or updates provided by Palo Alto Networks to fix the vulnerability.
- Restrict access to the affected systems to prevent authenticated users from exploiting the vulnerability.
- Monitor system logs for suspicious activity.
Evidence notes
The CVE record was published on 2026-06-10T22:16:53.573Z and modified on 2026-06-11T15:21:30.653Z. The vulnerability has a CVSS score of 4.6 and is classified as MEDIUM severity.
Official resources
-
CVE-2026-0269 CVE record
CVE.org
-
CVE-2026-0269 NVD detail
NVD
-
Source item URL
nvd_modified
- Source reference
CVE-2026-0269 was published on 2026-06-10T22:16:53.573Z and modified on 2026-06-11T15:21:30.653Z.