# CERT-FR flags mass Palo Alto Networks patch

Published: 2026-08-13 · Severity: routine
Canonical: https://vorant.io/reports/20ef94b1-1ca6-5f26-ae66-62de57da9584/cert-fr-flags-mass-palo-alto-networks-patch

> CERT-FR issued an advisory for numerous vulnerabilities across Palo Alto Networks products enabling RCE, privilege escalation, DoS and data exposure.

The French national CERT (CERT-FR) published an advisory covering a very large number of vulnerabilities affecting the Palo Alto Networks product portfolio, including PAN-OS, GlobalProtect App, Prisma Access, Prisma Access Agent, Prisma Browser, and Cloud NGFW. The flaws span multiple impact categories: remote code execution, privilege escalation, remote denial of service, data integrity and confidentiality breaches, and security policy bypass. Palo Alto Networks released a batch of security bulletins dated 12 August 2026 (CVE-2026-0289 through CVE-2026-0301 and PAN-SA-2026-0011) alongside an extensive additional set of CVE references spanning the CVE-2026-13774 through CVE-2026-14107+ range, indicating a very large coordinated patch cycle.

No exploitation in the wild, proof-of-concept code, or threat actor attribution is mentioned in the advisory; it is a vendor patch notification relayed by CERT-FR rather than an incident report. Organizations running the affected versions — PAN-OS prior to 11.1.17 or 10.2.8, GlobalProtect App versions below 6.0.15/6.2.8-h13/6.3.3-h14/h15, Prisma Access below 10.2.10, Prisma Access Agent below 26.2.2/26.3, and Prisma Browser below 150.49.8.187 — should apply the vendor-supplied updates referenced in the linked Palo Alto Networks security bulletins as soon as feasible, given the breadth of impact types including remote code execution.

## Mentioned in this report

- Vulnerabilities: CVE-2026-0289, CVE-2026-0290, CVE-2026-0291, CVE-2026-0292, CVE-2026-0293, CVE-2026-0294, CVE-2026-0295, CVE-2026-0296, CVE-2026-0297, CVE-2026-0298, CVE-2026-0299, CVE-2026-0301

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1014

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/20ef94b1-1ca6-5f26-ae66-62de57da9584/cert-fr-flags-mass-palo-alto-networks-patch.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
