Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Palo Alto Networks Addresses 11 Security Flaws in Latest Update

Palo Alto Networks Addresses 11 Security Flaws in Latest Update

Posted on August 12, 2026 By CWS

Palo Alto Networks has announced a series of security updates as part of its August 2026 bulletin, addressing 11 newly identified vulnerabilities. These flaws impact several products, including PAN-OS, GlobalProtect, and Prisma Access, along with a Chromium update rollup.

Details of the Vulnerabilities

The security issues addressed in this update involve various types of vulnerabilities, such as information disclosure, local privilege escalation, and buffer overflow. The severity of these vulnerabilities ranges from a CVSS score of 1.1 to 7.2, indicating that while none reach critical severity, they do require attention to maintain network security.

Among the newly disclosed vulnerabilities, CVE-2026-0301 stands out as an information disclosure issue affecting PAN-OS URL Filtering. This particular flaw impacts Cloud NGFW and several PAN-OS versions, including 12.1, 11.2, 11.1, and 10.2, as well as Prisma Access on AWS and Azure. Palo Alto Networks has already deployed fixes for relevant Cloud NGFW and Prisma Access instances.

Focus on GlobalProtect and Prisma Access

The GlobalProtect App has received significant attention in this update cycle, with fixes for six distinct CVEs. Among these, CVE-2026-0299 addresses privilege escalation vulnerabilities across multiple platforms including Linux, macOS, and Windows. A notable fix is also provided for a buffer overflow issue during the UDP tunnel handshake process, impacting mobile and desktop versions.

Similarly, Prisma Access Agent was the focus of four security disclosures. These include CVE-2026-0294, a privilege escalation flaw on Windows and macOS, and CVE-2026-0293, which bypasses anti-tamper protection on Windows. Both have an estimated patch availability by August 20, 2026.

Importance of Timely Updates

Despite none of the disclosed vulnerabilities being flagged as actively exploited, the breadth of the issues highlights the importance of timely updates. Administrators are encouraged to prioritize updates to PAN-OS management interfaces, URL filtering policies, and VPN clients on Windows and macOS to mitigate potential risks.

Organizations using Prisma Browser should also update to version 150.49.8.187 or later to address the highest risk CVSS score of 7.2 associated with Chromium vulnerabilities.

Staying informed about these updates is crucial for maintaining robust cybersecurity defenses in enterprise environments.

Cyber Security News Tags:buffer overflow, CVSS score, Cybersecurity, GlobalProtect, information disclosure, network security, Palo Alto Networks, PAN-OS, patch management, Prisma Access, privilege escalation, security update, Vulnerabilities

Post navigation

Previous Post: WhatsApp Introduces Scam Alert to Enhance User Safety
Next Post: Global Cyber Campaign Targets Salesforce and ServiceNow

Related Posts

Telecommunications Companies in Spain Experiencing Downtime Telecommunications Companies in Spain Experiencing Downtime Cyber Security News
New Phishing Attack Using Invisible Characters Hidden in Subject Line Using MIME Encoding New Phishing Attack Using Invisible Characters Hidden in Subject Line Using MIME Encoding Cyber Security News
Fake Installers Deploy SharkLoader Malware in Networks Fake Installers Deploy SharkLoader Malware in Networks Cyber Security News
Jenkins Security Flaws Pose Major XSS Threats Jenkins Security Flaws Pose Major XSS Threats Cyber Security News
ShadowSyndicate Adopts Server Transition in Cyber Attacks ShadowSyndicate Adopts Server Transition in Cyber Attacks Cyber Security News
Critical Salesforce Tableau Vulnerabilities Let Attackers Execute Code Remotely Critical Salesforce Tableau Vulnerabilities Let Attackers Execute Code Remotely Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Global Cyber Campaign Targets Salesforce and ServiceNow
  • Palo Alto Networks Addresses 11 Security Flaws in Latest Update
  • WhatsApp Introduces Scam Alert to Enhance User Safety
  • Lazarus Exploits Windows Flaw to Deploy New Backdoor
  • AI-Powered Cyberattack Targets Taiwan Government

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Global Cyber Campaign Targets Salesforce and ServiceNow
  • Palo Alto Networks Addresses 11 Security Flaws in Latest Update
  • WhatsApp Introduces Scam Alert to Enhance User Safety
  • Lazarus Exploits Windows Flaw to Deploy New Backdoor
  • AI-Powered Cyberattack Targets Taiwan Government

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark