SECURITYTHE HACKER NEWS
Palo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN Flaw
Palo Alto Networks has observed active exploitation of a PAN-OS vulnerability (CVE-2026-0257) in GlobalProtect portals, allowing unauthorized access via an authentication bypass flaw. The vulnerability affects portal and gateway components of PAN-OS software with a CVSS score of 7.8.
Related Signal
Adjacent reporting
- PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
- The Internet Is Falling Down- CPanel/WHM Authentication Bypass CVE-2026-41940
- BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass
- Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
- Patch Now: Another Palo Alto Auth Bypass Bug Under Active Exploit