Critical Palo Alto Firewall Flaw: CVE-2026-0300 Exploited to Gain Root Access

Critical Palo Alto Firewall Flaw: CVE-2026-0300 Exploited to Gain Root Access

Palo Alto Networks has disclosed a critical buffer overflow vulnerability in PAN-OS that is already being exploited in the wild. The flaw, tracked as CVE-2026-0300, can allow unauthenticated attackers to run arbitrary code with full root privileges on affected PA-Series and VM-Series firewalls when the User-ID™ Authentication Portal (captive portal) is exposed to untrusted networks. Given the ease of exploitation