Back to search
CVE-2026-0242
Published: May 13, 2026
Modified: May 15, 2026
PUBLISHED
Description
A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.
| Vendor | Product | Versions |
|---|---|---|
Palo Alto Networks | Trust Protection Foundation | affected 25.3.0 - < 25.3.3affected 25.1.0 - < 25.1.8affected 24.3.0 - < 24.3.6affected 24.1.0 - < 24.1.13 |
Weaknesses (CWE)
References
https://security.paloaltonetworks.com/CVE-2026-0242
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now