Palo Alto Warns High-Severity Bug Is Being Actively Exploited
ID: 59edc468-5638-51a9-b896-44135aff8268
STIX ID: report--59edc468-5638-51a9-b896-44135aff8268
Feed Name: Infosecurity Magazine (News)
Threat Score
A high-severity authentication-bypass vulnerability (CVE-2026-0257, CVSS 7.8) in Palo Alto Networks PAN-OS GlobalProtect has been actively exploited in multiple waves, enabling attackers to forge authentication cookies and, in some cases, obtain VPN IP assignment and internal network access; Rapid7 and Palo Alto urge immediate patching or mitigations, and CISA added the CVE to its KEV catalog with a mandated patch deadline.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
