<?xml version="1.0" encoding="utf-8" ?><?xml-stylesheet type="text/css" href="/css/rss.css" ?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Palo Alto Networks Security Advisories</title><description> </description><link>https://security.paloaltonetworks.com/rss.xml</link><atom:link href="https://security.paloaltonetworks.com/rss.xml" rel="self" type="application/rss+xml"></atom:link><item><title>CVE-2026-0233 Autonomous Digital Experience Manager: Improper validation of ADEM certificate (Severity: MEDIUM)</title><pubDate>2026-04-08T18:05:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0233</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0233</guid></item><item><title>CVE-2026-0232 Cortex XDR Agent: Local Administrator can disable the agent on Windows (Severity: MEDIUM)</title><pubDate>2026-04-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0232</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0232</guid></item><item><title>PAN-SA-2026-0005 Informational Bulletin: OSS CVEs Fixed in PAN-OS (Severity: INFORMATIONAL)</title><pubDate>2026-04-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0005</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0005</guid></item><item><title>PAN-SA-2026-0006 Informational Bulletin: Impact assessment of OSS CVEs in PAN-OS (Severity: INFORMATIONAL)</title><pubDate>2026-04-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0006</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0006</guid></item><item><title>CVE-2026-0234 Cortex XSOAR: Improper Verification of Cryptographic Signature in Microsoft Teams integration (Severity: HIGH)</title><pubDate>2026-04-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0234</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0234</guid></item><item><title>PAN-SA-2026-0004 Chromium: Monthly Vulnerability Update (April 2026) (Severity: MEDIUM)</title><pubDate>2026-04-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0004</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0004</guid></item><item><title>CVE-2025-4615 PAN-OS: Improper Neutralization of Input in the Management Web Interface (Severity: MEDIUM)</title><pubDate>2026-04-01T00:15:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-4615</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-4615</guid></item><item><title>CVE-2026-0231 Cortex XDR Broker VM: Sensitive Information Disclosure Vulnerability (Severity: MEDIUM)</title><pubDate>2026-03-11T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0231</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0231</guid></item><item><title>PAN-SA-2026-0003 Chromium: Monthly Vulnerability Update (March 2026) (Severity: MEDIUM)</title><pubDate>2026-03-11T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0003</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0003</guid></item><item><title>CVE-2026-0230 Cortex XDR Agent: Local Administrator can disable the agent on macOS (Severity: MEDIUM)</title><pubDate>2026-03-11T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0230</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0230</guid></item><item><title>CVE-2023-48795 Impact of Terrapin SSH Attack (Severity: MEDIUM)</title><pubDate>2026-03-10T01:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2023-48795</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2023-48795</guid></item><item><title>CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature (Severity: MEDIUM)</title><pubDate>2026-02-19T23:30:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0229</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0229</guid></item><item><title>CVE-2026-0228 PAN-OS: Improper Validation of Terminal Server Agent Certificate (Severity: LOW)</title><pubDate>2026-02-11T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0228</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0228</guid></item><item><title>PAN-SA-2026-0002 Chromium: Monthly Vulnerability Update (February 2026) (Severity: HIGH)</title><pubDate>2026-02-11T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0002</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0002</guid></item><item><title>CVE-2026-0227  PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal (Severity: HIGH)</title><pubDate>2026-02-09T17:30:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2026-0227</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0227</guid></item><item><title>PAN-SA-2026-0001 Chromium: Monthly Vulnerability Update (January 2026) (Severity: MEDIUM)</title><pubDate>2026-01-14T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2026-0001</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2026-0001</guid></item><item><title>CVE-2025-4619 PAN-OS: Firewall Denial of Service (DoS) Using Specially Crafted Packets (Severity: MEDIUM)</title><pubDate>2025-11-12T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-4619</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-4619</guid></item><item><title>PAN-SA-2025-0018 Chromium and Prisma Browser: Monthly Vulnerability Update (November 2025) (Severity: MEDIUM)</title><pubDate>2025-11-12T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2025-0018</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2025-0018</guid></item><item><title>PAN-SA-2025-0017 Informational Bulletin: Impact of OSS CVEs in Prisma SD-WAN ION (Severity: INFORMATIONAL)</title><pubDate>2025-11-03T17:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2025-0017</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2025-0017</guid></item><item><title>PAN-SA-2025-0016 Chromium: Monthly Vulnerability Update (October 2025) (Severity: MEDIUM)</title><pubDate>2025-10-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2025-0016</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2025-0016</guid></item><item><title>CVE-2025-4614 PAN-OS: Session Token Disclosure Vulnerability (Severity: LOW)</title><pubDate>2025-10-08T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-4614</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-4614</guid></item><item><title>CVE-2025-0117 GlobalProtect App: Local Privilege Escalation (PE) Vulnerability (Severity: MEDIUM)</title><pubDate>2025-09-30T19:43:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-0117</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-0117</guid></item><item><title>PAN-SA-2025-0015 Chromium: Monthly Vulnerability Update (September 2025) (Severity: MEDIUM)</title><pubDate>2025-09-10T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/PAN-SA-2025-0015</link><guid isPermaLink="true">https://security.paloaltonetworks.com/PAN-SA-2025-0015</guid></item><item><title>CVE-2025-4234 Cortex XDR Microsoft 365 Defender Pack: Cleartext Exposure of Credentials (Severity: LOW)</title><pubDate>2025-09-10T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-4234</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-4234</guid></item><item><title>CVE-2025-4235 User-ID Credential Agent: Cleartext Exposure of Service Account password (Severity: MEDIUM)</title><pubDate>2025-09-10T16:00:00.000Z</pubDate><link>https://security.paloaltonetworks.com/CVE-2025-4235</link><guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2025-4235</guid></item></channel></rss>