CVE-2026-0276Disclosure(paloaltonetworks / cortex_xdr_broker_vm)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root user.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cortex_xdr_broker_vm

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
cortex_xdr_broker_vm

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-07-08: 1Technical Details · 2026-07-08: 107-08
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • まっちゃだいふく@ripjyr
    Disclosure

    Paloaltoの脆弱性情報 「CVE-2026-0276 Cortex XDR Broker VM: Privilege Escalation (PE) Vulnerability (Severity: LOW)」が公開されました。 → https://security.paloaltonetworks.com/CVE-2026-0276

    Post summary

    A Paloalto Cortex XDR Broker VM privilege escalation vulnerability (CVE-2026-0276) has been publicly disclosed with an advisory link, but no PoC, exploit, or patch details are included.

    00000321
    8.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppaloaltonetworkscortex_xdr_broker_vm---

Explore more