{ "dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": { "cveId": "CVE-2026-0244", "assignerOrgId": "d6c1279f-00f6-4ef7-9217-f89ffe703ec0", "state": "PUBLISHED", "assignerShortName": "palo_alto", "dateReserved": "2025-11-03T20:44:04.828Z", "datePublished": "2026-05-13T19:03:09.013Z", "dateUpdated": "2026-05-13T19:29:53.580Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "d6c1279f-00f6-4ef7-9217-f89ffe703ec0", "shortName": "palo_alto", "dateUpdated": "2026-05-13T19:03:09.013Z" }, "title": "Prisma SD-WAN: Improper Certificate Validation Vulnerability", "datePublic": "2026-05-13T16:00:00.000Z", "problemTypes": [ { "descriptions": [ { "lang": "en", "cweId": "CWE-295", "description": "CWE-295 Improper Certificate Validation", "type": "CWE" } ] } ], "impacts": [ { "capecId": "CAPEC-94", "descriptions": [ { "lang": "en", "value": "CAPEC-94 Adversary in the Middle (AiTM)" } ] } ], "affected": [ { "vendor": "Palo Alto Networks", "product": "Prisma SD-WAN ION", "versions": [ { "status": "affected", "version": "6.5.0", "lessThan": "6.5.3-b15", "changes": [ { "at": "6.5.3-b15", "status": "unaffected" } ], "versionType": "custom" }, { "status": "affected", "version": "6.4.0", "lessThan": "6.4.3-b8", "changes": [ { "at": "6.4.3-b8", "status": "unaffected" } ], "versionType": "custom" }, { "status": "affected", "version": "6.3.0", "lessThan": "6.3.6-b10", "changes": [ { "at": "6.3.6-b10", "status": "unaffected" } ], "versionType": "custom" }, { "status": "unaffected", "version": "6.1.0", "versionType": "custom" }, { "status": "unaffected", "version": "5.6.0", "versionType": "custom" } ], "defaultStatus": "unaffected" } ], "cpeApplicability": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:h:palo_alto_networks:prisma_sd-wan_ion:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.5.3-b15", "versionStartIncluding": "6.5.1", "vulnerable": true }, { "criteria": "cpe:2.3:h:palo_alto_networks:prisma_sd-wan_ion:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.4.3-b8", "versionStartIncluding": "6.4.1", "vulnerable": true }, { "criteria": "cpe:2.3:h:palo_alto_networks:prisma_sd-wan_ion:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.3.6-b10", "versionStartIncluding": "6.3.1", "vulnerable": true } ], "negate": false, "operator": "OR" } ], "operator": "OR" } ], "descriptions": [ { "lang": "en", "value": "An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "
An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.
No special configuration is required to be affected by this issue.
" } ] } ], "workarounds": [ { "lang": "eng", "value": "No known workarounds exist for this issue.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "No known workarounds exist for this issue.
" } ] } ], "solutions": [ { "lang": "eng", "value": "Version Minor Version Suggested Solution\nPrisma SD-WAN ION 6.5 6.5.1 through 6.5.3 Upgrade to 6.5.3-b15 or later.\nPrisma SD-WAN ION 6.4 6.4.1 through 6.4.3 Upgrade to 6.4.3-b8 or later.\nPrisma SD-WAN ION 6.3 6.3.1 through 6.3.6 Upgrade to 6.3.6-b10 or later.\nPrisma SD-WAN ION 6.1 No action needed.\nPrisma SD-WAN ION 5.6 No action needed.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "| Version | Minor Version | Suggested Solution |
| Prisma SD-WAN ION 6.5 | 6.5.1 through 6.5.3 | Upgrade to 6.5.3-b15 or later. |
| Prisma SD-WAN ION 6.4 | 6.4.1 through 6.4.3 | Upgrade to 6.4.3-b8 or later. |
| Prisma SD-WAN ION 6.3 | 6.3.1 through 6.3.6 | Upgrade to 6.3.6-b10 or later. |
| Prisma SD-WAN ION 6.1 | No action needed. | |
| Prisma SD-WAN ION 5.6 | No action needed. |
Palo Alto Networks is not aware of any malicious exploitation of this issue.
" } ] } ], "timeline": [ { "time": "2026-05-13T16:00:00.000Z", "lang": "en", "value": "Initial publication." } ], "credits": [ { "lang": "en", "value": "Palo Alto Networks thanks our internal security research teams for discovering and reporting this issue.", "type": "other" } ], "source": { "discovery": "INTERNAL" }, "x_generator": { "engine": "Vulnogram 0.1.0-dev" }, "x_affectedList": [ "Prisma SD-WAN ION 6.5.0", "Prisma SD-WAN ION 6.5.1", "Prisma SD-WAN ION 6.5.2", "Prisma SD-WAN ION 6.4.0", "Prisma SD-WAN ION 6.4.1", "Prisma SD-WAN ION 6.4.2", "Prisma SD-WAN ION 6.3.0", "Prisma SD-WAN ION 6.3.1", "Prisma SD-WAN ION 6.3.2", "Prisma SD-WAN ION 6.3.3", "Prisma SD-WAN ION 6.3.4", "Prisma SD-WAN ION 6.3.5" ] }, "adp": [ { "metrics": [ { "other": { "type": "ssvc", "content": { "timestamp": "2026-05-13T19:16:56.890081Z", "id": "CVE-2026-0244", "options": [ { "Exploitation": "none" }, { "Automatable": "no" }, { "Technical Impact": "total" } ], "role": "CISA Coordinator", "version": "2.0.3" } } } ], "title": "CISA ADP Vulnrichment", "providerMetadata": { "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2026-05-13T19:29:53.580Z" } } ] } }