Skip to content
COOEY

EXPOSURES › CVE-2026-0258

CVE-2026-0258

CRITICAL
DETAIL
SourceNVD · cve Published2026-05-13 CVSS9.1 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2026-0258 ↗

▸ RECOMMENDED ACTION  Critical severity — schedule patching of the affected products.

DESCRIPTION

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition. Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabilities.

AFFECTED FEDRAMP PRODUCTS · 1
PRODUCTSTATUS
Mendix Cloud for Government
Siemens Government Technologies
In Process