Patch Now: CISA Warns of Palo Alto Flaw Exploited in the Wild
ID: 45442f32-bbd7-50fc-83ae-f8780f2a250c
STIX ID: report--45442f32-bbd7-50fc-83ae-f8780f2a250c
Feed Name: Dark Reading
Date Published: 2025-02-19
Date Updated: 2026-05-05
Author: Elizabeth Montalbano, Contributing Writer
Attackers are actively exploiting an authentication-bypass vulnerability (CVE-2025-0108, CVSS 8.8) in Palo Alto PAN-OS management interfaces; researchers and CISA report rapid increases in exploit attempts, observed malicious IPs, and chaining with other PAN-OS flaws (CVE-2024-9474 and CVE-2025-0111). Palo Alto has released patches for affected versions and recommends restricting management-interface access and whitelisting trusted IPs; CISA added the flaw to its Known Exploited Vulnerabilities Catalog.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
