CVE-2026-0300
- CVSS
- —
- EPSS
- 0.317 (98.2th percentile)
- CISA KEV
- Added 2026-05-06, due 2026-05-09
- Exploitation
- No report
- Public exploits
- 10 repositories
- State
- Unknown
Coverage

Actively exploitedCritical 100Wiz Research
Critical Buffer Overflow Vulnerability in PAN-OS Exploited in-the-Wild
Detect and mitigate CVE-2026-0300, a critical vulnerability in Palo Alto Networks PAN-OS User-ID Authentication Portal that allows unauthenticated attackers to achieve remote code execution (RCE) with root privileges.
What we observed
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- kev addedcisa-kev