Back to search

Palo Alto Networks

PAN-OS

See the latest tracked release, confirm when it was published, and subscribe for update emails.

Current version
Last checked: 2026-09-04

12.1.9

Release date
August 13, 2026
Security status
1 high-severity CVE tracked in the last 90 days. Current version not affected.

Source

endoflife.date

Public release notes are linked for the latest stored release.

Release history

See the latest published releases stored for this product.

Version Published Notes
12.1.9 2026-08-13 Release Notes
12.1.8 2026-07-07 Release Notes
12.1.7-h1 2026-06-22 Release Notes
12.1.7 2026-05-28 Release Notes
12.1.6 2026-03-28 Release Notes
12.1.5 2026-03-05 Release Notes

Vulnerability tracking

versionPing monitors CVEs for this product. Matching CVEs are listed below. We only display CVEs with a CVSS score of 7.0 or higher that were published within the last 90 days.

Affected status is inferred from published affected version ranges where available. Always verify against the vendor advisory before making production decisions.

CVE Severity Published Status Summary
CVE-2026-0288 HIGH (7.2) 2026-07-08 Current versionnot affected

Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic. The security risk posed by this issue is minimized when the User-ID Terminal Server Agent connectivity is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://docs.paloaltonetworks.com/ngfw/help/10-2/user-identification/device-user-identification-terminal-services-agents#:~:text=To%20minimize%20security%20risk%2C%20restrict%20TS%20Agent%20connectivity%20to%20trusted%20internal%20IP%20addresses%20only. . Panorama is not impacted by this vulnerability.

Affected versions
  • From (including) 12.1.0 - Up to (excluding) 12.1.8
  • From (including) 11.2.0 - Up to (excluding) 11.2.13
Show 2 more
  • From (including) 11.1.0 - Up to (excluding) 11.1.16
  • From (including) 10.2.0 - Up to (excluding) 10.2.7-h36