Rapid7 Observes New Palo Alto VPN Flaw Exploited in the Wild to Bypass GlobalProtect Authentication


  • Critical PAN‑OS flaw exploited in the wild
  • Authentication bypass allows unauthorized VPN access
  • CISA added CVE‑2026‑0257 to the KEV catalog

A recently discovered vulnerability in PAN-OS, the operating system that powers Palo Alto’s firewalls, is being actively exploited, researchers say, urging customers to apply the provided patch as soon as possible.

In mid-May of this year, Palo Alto disclosed an authentication bypass flaw in the Global Protect portal and gateway that allows malicious actors to bypass security restrictions and establish an unauthorized VPN connection. The bug is now tracked as CVE-2026-0257 and assigned a severity score of 9.1/10 (critical).

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top