← Back to CVE search

CVE-2026-0270

Cortex XSOAR

Description

A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenticated attacker on an adjacent network, with the ability to intercept and manipulate network response traffic via a man-in-the-middle (MITM) attack, to write arbitrary files to the host.

CVSS 7.5EPSS 0.199%Risk 0.76
View source
Published
2026-06-10 22:16:53
Affected versions
unknown
Type
Critical software
Vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Operating systems
Linux