PALO ALTO Security Advisory

Published Date: July 8, 2026

CVE: CVE-2026-0288

Advisory Summary

❗ High Severity Alert: PAN-OS Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent

Palo Alto Networks has disclosed a critical security update addressing CVE-2026-0288, a set of buffer overflow vulnerabilities detected in the PAN-OS User-ID Terminal Server Agent. These flaws are classified with HIGH severity, posing a significant risk of remote exploitation that could potentially allow attackers to execute arbitrary code or crash the service, impacting firewall user identification and network security monitoring.

IT infrastructure and data center administrators running PAN-OS in environments using the User-ID Terminal Server Agent should prioritize applying the latest security patches immediately. Mitigating this vulnerability is crucial to maintaining the integrity and reliability of User-ID operations which are foundational for accurate policy enforcement in enterprise networks.

Ensure your security teams review the official advisory, verify your PAN-OS versions, and follow Palo Alto’s guidance to safeguard against exploitation attempts. Keeping endpoint and firewall agents updated remains a cornerstone in defending complex digital infrastructures against advanced threats.

πŸ”—

Reference: Vendor Advisory