Palo Alto has released a patch for the zero-day vulnerability CVE-2024-0012. This vulnerability can allow “an authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authenticated privilege escalation vulnerabilities like CVE-2024-9474.”
Here is the LINK to Palo Alto’s alert which includes versions that are affected and mitigations.