PAN-SA-2026-0006: Informational Bulletin: Impact assessment of OSS CVEs in PAN-OS (Severity: INFORMATIONAL)
Published Apr 8, 2026
·Updated
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to PAN-OS software. While PAN-OS software may include the affected OSS package, PAN-OS does not offer any scenarios required for an attacker to successfully exploit these vulnerabilities and is not impacted.
Affected Software
1 affected component
Palo Alto Networks PAN-OS
Remediation
Information
The OSS CVEs are fixed in the respective PAN-OS versions.
Event History
Apr 8, 2026
Advisory Published
via Palo Alto Networks·04:00 PM
Data Sourced
via Palo Alto Networks·04:00 PM
RemedyDescriptionSeverityWeaknessAffected Software