CVE-2026-0228

PAN-OS - Certificate Validation

Title source: llm

Description

An improper certificate validation vulnerability in PAN-OS allows users to connect Terminal Server Agents on Windows to PAN-OS using expired certificates even if the PAN-OS configuration would not normally permit them to do so.

Scores

EPSS 0.0001
EPSS Percentile 1.0%

Classification

CWE
CWE-295
Status draft

Timeline

Published Feb 11, 2026
Tracked Since Feb 18, 2026