Palo Alto patches a worrying security issue which could crash your firewall without even logging in

  • Palo Alto patched CVE-2026-0227, a DoS flaw in GlobalProtect Gateway and Portal
  • Vulnerability could force firewalls into maintenance mode; severity rated 7.7/10
  • Cloud NGFW unaffected; patches required as no workarounds exist, no abuse reported yet

Palo Alto says it has fixed a high-severity vulnerability in some of its products that allowed malicious actors to run Denial of Service (DoS) attacks and place the compromised instances in maintenance mode.

In a security advisory, the cybersecurity company said it discovered a denial-of-service vulnerability in GlobalProtect Gateway and Portal. GlobalProtect is the company’s remote access VPN system, with Portal and Gateway being its main two components.

The vulnerability is now tracked as CVE-2026-0227 and was given a severity score of 7.7/10 (high).

Vulnerable versions and workarounds

“A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to the firewall,” the advisory reads. “Repeated attempts to trigger this issue results in the firewall entering into maintenance mode.”

Here is the full list of all affected versions of the product:

PAN-OS 12.1 < 12.1.3-h3, < 12.1.4

PAN-OS 11.2 < 11.2.4-h15, < 11.2.7-h8, < 11.2.10-h2

PAN-OS 11.1 < 11.1.4-h27, < 11.1.6-h23, < 11.1.10-h9, < 11.1.13

PAN-OS 10.2 < 10.2.7-h32, < 10.2.10-h30, < 10.2.13-h18, < 10.2.16-h6, < 10.2.18-h1

PAN-OS 10.1 < 10.1.14-h20

Prisma Access 11.2 < 11.2.7-h8

Prisma Access 10.2 < 10.2.10-h29

Palo Alto also said that the vulnerability can only be exploited on PAN-OS NGFW or Prisma Access configurations, with an enabled GlobalProtect Gateway, or Portal.

Its Cloud Next-Generation Firewall (NGFW) is not impacted, and right now, there are no known workarounds to mitigate the flaw. The only way to address the issue is to apply the provided patch.

“We have successfully completed the Prisma Access upgrade for most of the customers, with the exception of few in progress due to conflicting upgrade schedules,” the company added. “Remaining customers are being promptly scheduled for an upgrade through our standard upgrade process.”

There is no evidence of abuse in the wild at this time.

Via The Hacker News

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Read more @ TechRadar

Latest posts

Behind the unraveling of Dan Crenshaw

In 2019, a 36-year-old Rep. Dan Crenshaw (R-TX), newly elected to Congress, was photographed for the inaugural Time 100 Next List, wearing a dashing...

The year’s weirdest game is hard to explain and even harder to put down

The first rule of Titanium Court is that you can't explain Titanium Court. Not because we're living under the omerta of an 8-bit Fight...

BMW’s flagship 7 Series gets its ‘Neue Klasse’ upgrade

Ever since BMW first announced its "Neue Klasse" next-generation electric vehicle architecture and design language way back in 2021, the question on many fans'...

Call of Duty never made much sense for Xbox Game Pass

Call of Duty: Black Ops 7. | Image: Activision Blizzard Yesterday Microsoft announced some surprising news: at a time when everything in gaming is getting...

I bought Alienware’s $350 OLED monitor and I can’t believe how good it is

At $350, the AW2726DM is cheap enough that some people may choose to buy two for a dual monitor setup. I've recommended several OLED gaming...

Now Meta will track what employees do on their computers to train its AI agents

Meta employees' activity at work is now being used to train the company's AI agents. As reported by Reuters, Meta is installing a tool...

Sony’s PlayStation 5 is $200 off for the first time since December

When the price increases for PlayStation 5 consoles went into effect on April 2nd, we weren’t sure when the next time a good discount...

Will a new CEO realize Apple’s smart home potential?

It took Tim Cook years to launch Apple into major new hardware categories, such as the smartwatch. But John Ternus could start his tenure...

Anker’s ‘Thus’ chip brings AI to its headphones and other products

Anker has announced its own chip that can give its small, wearable products AI capabilities that run locally on device. The company is planning...

Yoshi and the Mysterious Book preview: A choose-your-own-adventure even adults can love

Yoshi's solo titles have always been a product of contrasts: lovingly crafted art styles belying somewhat thin gameplay meant to appeal to a younger...