PAN‑OS and Prisma SD‑WAN ION devices are affected by Terrapin (CVE-2023-48795). An attacker intercepting SSH traffic can downgrade client connections to force weaker client-auth algorithms and expose administrative sessions; vendor rates severity Medium.
Part of the PlainSec briefing for 2026-03-10