CVE-2026-0301 LOW

CVE-2026-0301: PAN-OS: Information Disclosure Vulnerability in URL Filtering

Vendor Palo Alto Networks
Product Cloud NGFW
Weakness CWE-908
Published August 13, 2026
Last update August 13, 2026

CVSS base score

1.7/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:Amber

What the vulnerability does

01Description

An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® software enables an unauthenticated user with network access to obtain sensitive information. Panorama is not impacted by this vulnerability.

Key dates

02Disclosure timeline

August 13, 2026 CVE published
August 13, 2026 Record updated