CVE-2026-0276: Cortex XDR Broker VM: Privilege Escalation (PE) Vulnerability (Severity: LOW)
A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root user.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 31.0.58 - Upgrade
Upgrade
Palo Alto Networks Cortex XDR Broker VMto a version that resolves this vulnerability.Fixed in 31.0.58 - Compensating control
If automatic upgrades are not enabled for Cortex XDR Broker VM, enable automatic upgrades to ensure the latest security patches are installed.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0276?
CVE-2026-0276 has a medium severity rating of 4.8.
What type of vulnerability is identified in CVE-2026-0276?
CVE-2026-0276 is a privilege escalation vulnerability affecting Palo Alto Networks Cortex XDR Broker VM.
Who is affected by CVE-2026-0276?
CVE-2026-0276 affects locally authenticated users of the Palo Alto Networks Cortex XDR Broker VM.
How do I fix CVE-2026-0276?
To mitigate CVE-2026-0276, ensure that you are using the latest version of the Palo Alto Networks Cortex XDR Broker VM and apply any relevant security patches.
What can an attacker achieve with CVE-2026-0276?
An attacker exploiting CVE-2026-0276 can perform actions as the root user on the affected system.