PALO ALTO Security Advisory

Published Date: May 19, 2026

CVE: CVE-2026-0264

Advisory Summary

Palo Alto Networks has disclosed a high-severity vulnerability (CVE-2026-0264) in their PAN-OS platform impacting the DNS Proxy and DNS Server components. This heap-based buffer overflow flaw allows unauthenticated remote attackers to execute arbitrary code on affected devices. Considering the pivotal role of PAN-OS in securing network perimeters, this vulnerability poses a significant risk to enterprise network integrity and data center security.

Affected organizations must prioritize evaluating their PAN-OS versions and apply the vendor-provided security patches immediately to mitigate potential exploitation risks. Ignoring this update could lead to unauthorized access, system control compromise, and disruption of network traffic filtering capabilities. This highlights the ongoing importance of robust patch management in infrastructure security strategies.

IT professionals and security teams should also monitor for any indicators of compromise related to this vulnerability and incorporate this update into threat detection and response workflows.

Reference: Vendor Advisory