CVE-2026-0276

Summary

A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root user.

Affected Software

VendorProductVersion RangeStatus
Palo Alto NetworksCortex XDR Broker VM20.0.96 < 31.0.58affected

Weaknesses

  • CWE-269: CWE-269 — Improper Privilege Management

Workarounds

No known workarounds exist for this issue.

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References