logo

Palo Alto Warns High-Severity Bug Is Being Actively Exploited

ID: 59edc468-5638-51a9-b896-44135aff8268

STIX ID: report--59edc468-5638-51a9-b896-44135aff8268

Feed Name: Infosecurity Magazine (News)

Threat Score
78/100

Date Published: 2026-06-01

Date Updated: 2026-06-01

...
...

A high-severity authentication-bypass vulnerability (CVE-2026-0257, CVSS 7.8) in Palo Alto Networks PAN-OS GlobalProtect has been actively exploited in multiple waves, enabling attackers to forge authentication cookies and, in some cases, obtain VPN IP assignment and internal network access; Rapid7 and Palo Alto urge immediate patching or mitigations, and CISA added the CVE to its KEV catalog with a mandated patch deadline.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.