Home
MEDIUM: 5.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:AmberDefault status
unaffected
25.3.0 (custom) before 25.3.3
affected
25.1.0 (custom) before 25.1.8
affected
24.3.0 (custom) before 24.3.6
affected
24.1.0 (custom) before 24.1.13
affected
Description
Incorrect Authorization vulnerabilities in Trust Protection Foundation allow attackers to bypass access controls and perform unauthorized actions on restricted resources.
Problem types
CWE-754 Improper Check for Unusual or Exceptional Conditions
Product status
25.3.0 (custom) before 25.3.3
25.1.0 (custom) before 25.1.8
24.3.0 (custom) before 24.3.6
24.1.0 (custom) before 24.1.13
Timeline
| 2026-05-13: | Initial publication. |
Credits
Palo Alto Networks thanks our internal security research teams for discovering and reporting this issue.
References
security.paloaltonetworks.com/CVE-2026-0241