Back to CVE List

CVE-2026-0256

Vulnerability Description

A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface.


This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series).

Cloud NGFW and Prisma® Access are not impacted by this vulnerability.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-79
Source
NVD

External References

Discussion (0)

Add Comment

No comments yet. Be the first!