CVE-2026-0258

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition. Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabilities.
CVSS

No CVSS.

Configurations

No configuration.

History

09 Jun 2026, 10:16

Type Values Removed Values Added
References
  • () https://cert-portal.siemens.com/productcert/html/ssa-967325.html -

13 May 2026, 19:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-13 19:17

Updated : 2026-06-17 10:10


NVD link : CVE-2026-0258

Mitre link : CVE-2026-0258

CVE.ORG link : CVE-2026-0258


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)