Vulnerability Intelligence Report
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
CVE-2026-0257
Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.
CISA KEV
Nuclei Template
SSVC: Active Exploitation
CVSS Base Score
7.8
HIGH
EPSS Probability:86.68%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-565 ↗CWE-565 Reliance on Cookies without Validation and Integrity Checking
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Palo Alto Networks | Cloud NGFW | All (unaffected) |
| Palo Alto Networks | PAN-OS | 12.1.0 < 12.1.7, 12.1.4-h6 (affected), 11.2.0 < 11.2.12, 11.2.10-h7, 11.2.7-h14, 11.2.4-h17 (affected), 11.1.0 < 11.1.15, 11.1.13-h5, 11.1.10-h25, 11.1.7-h6, 11.1.6-h32, 11.1.4-h33 (affected), 10.2.0 < 10.2.18-h6, 10.2.16-h7, 10.2.13-h21, 10.2.10-h36, 10.2.7-h34 (affected) |
| Palo Alto Networks | Prisma Access | 10.2.0 < 10.2.10-h36 (affected), 11.2.0 < 11.2.7-h13 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
CISA KEV
ACTIVE IN CATALOG
Nuclei Template
SCANNER AVAILABLE
EPSS Score
86.678%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Palo Alto Networks, Inc. · Vendor · USA |
| Reserved | 2025-11-03T20:44:17 |
| Published | 2026-05-13T18:15:10 |
| Patch Date | 2026-05-13 |
| Last Updated | 2026-07-14T12:45:06 |
Community Chatter & Buzz