PT-2026-40765 · Palo Alto Networks · Trust Protection Foundation

Published

2026-05-13

·

Updated

2026-05-13

·

CVE-2026-0240

CVSS v4.0

4.5

Medium

VectorAV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:N/SC:L/SI:L/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:Amber
An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-0240

Affected Products

Trust Protection Foundation