CVE-2026-0240EPSS p13.7%
CVE-2026-0240CVE-2026-0240
paloaltonetworks / trust_protection_foundation
Description
An information disclosure vulnerability in Trust Protection Foundation enables an authenticated attacker to obtain sensitive information from the server's vault. Successful exploitation of this issue allows the attacker to impersonate any user within the environment and arbitrarily modify configuration settings.
Scoring
| CVSS | 8.7 () |
| Vector | CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N |
| EPSS | 0.24% probability of exploitation · percentile 13.7% · 2026-10-05T12:00:23Z |
| Last modified | 2026-07-13 |