PT-2026-48557 · Palo Alto Networks · Cortex Xsoar

Published

2026-06-10

·

Updated

2026-06-10

·

CVE-2026-0270

CVSS v4.0

4.8

Medium

VectorAV:A/AC:H/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/AU:Y/R:U/V:D/RE:M/U:Amber
A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenticated attacker on an adjacent network, with the ability to intercept and manipulate network response traffic via a man-in-the-middle (MITM) attack, to write arbitrary files to the host.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2026-0270

Affected Products

Cortex Xsoar