CVE-2026-0244
Prisma SD-WAN: Improper Certificate Validation Vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.
| CWE | CWE-295 |
| Vendor | palo alto networks |
| Product | prisma sd-wan ion |
| Published | May 13, 2026 |
| Last Updated | May 13, 2026 |
Stay Ahead of the Next One
Get instant alerts for palo alto networks prisma sd-wan ion
Be the first to know when new unknown vulnerabilities affecting palo alto networks prisma sd-wan ion are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Palo Alto Networks / Prisma SD-WAN ION
6.5.0 < 6.5.3-b15 6.4.0 < 6.4.3-b8 6.3.0 < 6.3.6-b10
References
Credits
Palo Alto Networks thanks our internal security research teams for discovering and reporting this issue.