Palo Alto Networks IncCritical PAN-OS buffer overflow vulnerability (CVE-2026-0310, CVSS 9.2) allows unauthenticated remote code execution, a product security flaw.

Palo Alto Networks shares fell 3% in the afternoon session after the company published a security advisory addressing a critical buffer overflow vulnerability in its PAN-OS software. The advisory detailed an XML processing flaw cataloged as CVE-2026-0310 with a CVSSv4 base score of 9.2, a high-severity vulnerability that enables unauthenticated attackers to execute arbitrary code with root privileges or trigger denial-of-service conditions. The decline came despite positive analyst action, as Wedbush analyst Steven Wahrhaftig assumed coverage of Palo Alto Networks with a Buy rating and a $400 price target, placing the stock on the firm's Best Ideas List due to its platformization leadership. After the initial drop, the shares shed some of the losses and rose to $328.75, down 2.9% from the previous close. The stock is up 83.3% since the beginning of the year but remains 17% below its 52-week high of $396 from August 2026.
Palo Alto Networks IncCritical PAN-OS buffer overflow vulnerability (CVE-2026-0310, CVSS 9.2) allows unauthenticated remote code execution, a product security flaw.