A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition.
Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabilities.
CVSS
No CVSS.
References
Configurations
No configuration.
History
09 Jun 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
13 May 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-13 19:17
Updated : 2026-06-17 10:10
NVD link : CVE-2026-0258
Mitre link : CVE-2026-0258
CVE.ORG link : CVE-2026-0258
JSON object : View
Products Affected
No product.
CWE
CWE-918
Server-Side Request Forgery (SSRF)
