Missing Threat IDs in Vulnerability Protection Profile Exceptions

Missing Threat IDs in Vulnerability Protection Profile Exceptions

15
Created On 05/01/26 04:19 AM - Last Modified 07/21/26 05:27 AM


Symptom


  • Threat ID Missing from GUI: The Threat ID is not visible or displays as "unknown" in the exceptions tab of the Vulnerability Protection profile, despite being included in the latest content release.
  • CLI Verification: Querying the Threat ID via the CLI confirms that the signature is successfully installed and present on the firewall.
  • Version Compatibility: The running PAN-OS version meets the "Minimum OS version" requirements for the signature.
  • Persistence: The issue persists after refreshing the browser, logging out and back in, or removing and re-installing the content package.
  • Isolated Behavior: Other users accessing the firewall from different host machines are able to successfully visualize and configure the threat exception, indicating the issue may be client-side.


Environment


  • PAN-OS

  • Threat Prevention

  • Vulnerability Protection Profile

 



Cause


The issue originates from a client-side failure within the web browser. The browser fails to trigger the necessary API call to the firewall to fetch the most recent threat exception data. Consequently, the graphical interface relies on cached or predefined content rather than retrieving the updated signature information. This discrepancy results in the Threat ID appearing absent from the GUI, even though the signature is correctly installed and verified as active via the CLI.



Resolution


To resolve this, clear the browser preferences stored by the firewall's web interface:

  1. Navigate to your firewall's management URL and append /debug to the end (e.g., https://[Firewall-IP]/debug). 
  2. Locate and click the Clear preferences button.  
  3. Refresh the firewall's main management page and navigate back to the Vulnerability Protection profile exceptions tab to verify that the missing Threat ID is now visible.


Additional Information


Alternative variants of this issue are documented in the articles below:

Missing Threat ID in the exception tab of Vulnerability Protection Profile on WebGUI

How to find the Threat ID when it is not searchable from threat exception tab



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA1Ki000000oMWeKAM&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail