CVE-2026-0280
published 2026-07-09CVE-2026-0280: An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security…
PriorityP346high7.2CVSS 3.1
AVNACLPRNUINSCCLILAN
EPSS
0.19%
8.8th percentile
An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be blocked to reach protected services.
Cloud NGFW and Panorama are not impacted by this vulnerability.
Affected
213 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| palo_alto_networks | pan-os | >= 10.2.0 < 10.2.18-h8 | 10.2.18-h8 |
| palo_alto_networks | pan-os | >= 11.1.0 < 11.1.16 | 11.1.16 |
| palo_alto_networks | pan-os | >= 11.2.0 < 11.2.13 | 11.2.13 |
| palo_alto_networks | pan-os | >= 12.1.0 < 12.1.8 | 12.1.8 |
| palo_alto_networks | prisma_access | >= 10.2.0 < 10.2.10-h39 | 10.2.10-h39 |
| palo_alto_networks | prisma_access | >= 11.2.0 < 11.2.7-h18 | 11.2.7-h18 |
| paloalto | cloud_ngfw | — | — |
| paloalto | pan-os | — | — |
| paloalto | panorama | — | — |
| paloalto | prisma_access | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
| paloaltonetworks | pan-os | — | — |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
nvdv4.01.7LOWCVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:D/RE:M/U:Amber
vendor_redhat4.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Palo Alto Cloud NGFW/PAN-OS/Prisma Access Dataplane improper authentication (EUVD-2026-42681)
vuldb·2026-07-09·CVSS 1.7
CVE-2026-0280 [LOW] Palo Alto Cloud NGFW/PAN-OS/Prisma Access Dataplane improper authentication (EUVD-2026-42681)
A vulnerability marked as problematic has been reported in Palo Alto Cloud NGFW, PAN-OS and Prisma Access. Impacted is an unknown function of the component Dataplane. Performing a manipulation results in improper authentication.
This vulnerability was named CVE-2026-0280. The attack may be initiated remotely. There is no available exploit.
GHSA
An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network tra
ghsa_unreviewed·2026-07-09
CVE-2026-0280 [LOW] CWE-131 An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network tra
An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be blocked to reach protected services.
Cloud NGFW and Panorama are not impacted by this vulnerability.
Red Hat
vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass
vendor_redhat·2026-04-06·CVSS 4.1
CVE-2026-35177 [MEDIUM] CWE-22 vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass
vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass
Vim is an open source, command line text editor. Prior to 9.2.0280, a path traversal bypass in Vim's zip.vim plugin allows overwriting of arbitrary files when opening specially crafted zip archives, circumventing the previous fix for CVE-2025-53906. This vulnerability is fixed in 9.2.0280.
A flaw was found in Vim's zip.vim plugin. A local user could be tricked into opening a specially crafted zip archive, which would allow a path traversal bypass. This vulnerability enables an attacker to overwrite arbitrary files on the system, potentially leading to data integrity issues or further system compromise.
Statement: There's a flaw in `zip.vim` plugin in Vim, allowing a local attacker to overwrite arbitrary
Palo Alto
PAN-OS: IPv6 Firewall Policy Bypass
vendor_paloalto·CVSS 6.3
CVE-2026-0280 CWE-131 PAN-OS: IPv6 Firewall Policy Bypass
PAN-OS: IPv6 Firewall Policy Bypass
An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be blocked to reach protected services.
Cloud NGFW and Panorama are not impacted by this vulnerability.
Affected products: Cloud NGFW, PAN-OS, Panorama, Prisma Access
Solution: VERSION MINOR VERSION SUGGESTED SOLUTION
Cloud NGFW No action needed.
PAN-OS 12.1 12.1.5 through 12.1.7-h* Upgrade to 12.1.7-h2 or 12.1.8 or later.
12.1.2 through 12.1.4-h* Upgrade to 12.1.4-h8 or 12.1.8 or later.
PAN-OS 11.2 11.2.11 through 11.2.12 Upgrade to 11.2.13 or later.
11.2.8 through 11.2.10-h* Upgrade to 11.2.10-h11 or 11.2.13 or later.
11.2.5 through 1
No detection rules found.
No public exploits indexed.
2026-07-09
Published