Palo Alto VPN bug graduates from advisory to active exploitation
ID: 45ef3eba-2ac1-52e2-916e-6a36f659261b
STIX ID: report--45ef3eba-2ac1-52e2-916e-6a36f659261b
Feed Name: The Register (Security)
Threat Score
Palo Alto disclosed a PAN-OS vulnerability (CVE-2026-0257) affecting GlobalProtect authentication override cookies that attackers are actively exploiting to bypass VPN authentication and gain unauthorized network access. Rapid7 observed successful exploitation across multiple environments since at least May 17, prompting Palo Alto to raise the severity, issue urgent patches, and CISA to list the flaw in its Known Exploited Vulnerabilities catalog.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
