CVE-2026-0257

CRITICALCVSS 9.196% EPSSKEV — known exploited🔒 Used in ransomware🧨 Public exploit (GreyNoise)

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.

Published 2026-05-13 · last modified 2026-06-17

Affected products

VendorProduct
paloaltonetworkspan-os
paloaltonetworksprisma_access
siemensruggedcom_ape1808_firmware

Full record at NVD ↗

← Get alerted the moment a CVE hits your gear — subscribe free

Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.