--- type: Addressed product: PAN-OS version: 11.1.6-h35 --- ## BLANK-000000 Fixes were made to address the following CVEs: - [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283) - [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287) - [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279) - [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282) - [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288) - [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286) - [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285) - [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280) - [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284) - [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281) ## PAN-319504 Fixed an issue where telemetry data was not sent to the cloud due to the firewall being unable to resolve the destination server's FQDN even when a proxy server was configured. With this fix, the firewall properly sends telemetry data through the configured proxy server without requiring direct public DNS resolution for the telemetry server's FQDN. ## PAN-313218 Added the following CLI commands to address QoS packet drops due to bursty traffic: - debug dataplane set qos-setting qos-param qlimit 300 - debug dataplane set qos-setting qos-param red low 50 high 90 To utilize this fix, change the parameters, disable QoS, commit changes, enable QOS, and then re-commit changes. ## PAN-304360 Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled. ## PAN-285327 Fixed an issue where a memory leak occurred when processing device and vsys tags.