CVE-2026-0283: PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN) (Severity: MEDIUM)
Published Jul 8, 2026
·
Updated
An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized site-to-site VPN connection.
Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
Recommended actions to resolve this vulnerability, in priority order.
Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 12.1.8Fixed in 12.1.7-h2Fixed in 12.1.4-h8Fixed in 11.2.13Fixed in 11.2.10-h12Fixed in 11.2.7-h18Fixed in 11.2.4-h20Fixed in 11.1.16Fixed in 11.1.13-h9Fixed in 11.1.10-h30Fixed in 11.1.7-h8Fixed in 11.1.6-h35Fixed in 11.1.4-h35Fixed in 10.2.18-h8Fixed in 10.2.16-h9Fixed in 10.2.13-h23Fixed in 10.2.10-h39Fixed in 10.2.7-h36
Upgrade
Upgrade Palo Alto Networks PAN-OS 10.2 to a version that resolves this vulnerability.
Fixed in 10.2.7-h36
Upgrade
Upgrade Palo Alto Networks PAN-OS 10.2 to a version that resolves this vulnerability.
Fixed in 10.2.13-h23
Upgrade
Upgrade Palo Alto Networks PAN-OS 10.2 to a version that resolves this vulnerability.
Fixed in 10.2.16-h9
Upgrade
Upgrade Palo Alto Networks PAN-OS 10.2 to a version that resolves this vulnerability.
Fixed in 10.2.10-h39
Upgrade
Upgrade Palo Alto Networks PAN-OS 11.1 to a version that resolves this vulnerability.
Fixed in 11.1.16
Upgrade
Upgrade Palo Alto Networks PAN-OS 11.2 to a version that resolves this vulnerability.
Fixed in 11.2.13
Upgrade
Upgrade Palo Alto Networks PAN-OS 12.1 to a version that resolves this vulnerability.
Fixed in 12.1.8
Upgrade
Upgrade Palo Alto Networks PAN-OS 10.2 to a version that resolves this vulnerability.
Fixed in 10.2.18-h8
Upgrade
Upgrade Palo Alto Networks PAN-OS 12.1 to a version that resolves this vulnerability.
Fixed in 12.1.7-h2
Configuration
Ensure Threat ID 510032 is enabled/protected by applying the vulnerability protection security profile to your GlobalProtect interface.
Palo Alto Networks PAN-OS Threat ID 510032 (vulnerability protection) vulnerability protection security profile applied to GlobalProtect interface = applied
SecAlerts Pty Ltd. 132 Wickham Terrace Fortitude Valley, QLD 4006, Australia info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.