PAN-OS GlobalProtect Auth Bypass Under Attack
Palo Alto Networks just disclosed an authentication bypass in PAN-OS and Prisma Access that attackers are already using in the wild.
CVE-2026-0257 scores CVSS 7.8 and lets unauthenticated users reach protected GlobalProtect portals and gateways without valid credentials. The flaw affects the authentication logic itself.
Affects specific PAN-OS 10.2, 11.1, 11.2, 12.1 and Prisma Access 10.2/11.2 deployments. Enterprise firewalls and cloud access services both qualify.
Rapid7 later published technical exploit details.
Source: The Hacker News
