logo

Palo Alto VPN bug graduates from advisory to active exploitation

ID: 45ef3eba-2ac1-52e2-916e-6a36f659261b

STIX ID: report--45ef3eba-2ac1-52e2-916e-6a36f659261b

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2026-06-01

Date Updated: 2026-06-03

...
...

Palo Alto disclosed a PAN-OS vulnerability (CVE-2026-0257) affecting GlobalProtect authentication override cookies that attackers are actively exploiting to bypass VPN authentication and gain unauthorized network access. Rapid7 observed successful exploitation across multiple environments since at least May 17, prompting Palo Alto to raise the severity, issue urgent patches, and CISA to list the flaw in its Known Exploited Vulnerabilities catalog.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.