CVE-2026-0228
Severity CVSS v4.0:
LOW
Type:
CWE-295
Improper Certificate Validation
Publication date:
11/02/2026
Last modified:
12/02/2026
Description
An improper certificate validation vulnerability in PAN-OS allows users to connect Terminal Server Agents on Windows to PAN-OS using expired certificates even if the PAN-OS configuration would not normally permit them to do so.



