TopicPalo Alto Networks
1+ post
GlobalProtect VPN Bypass (CVE-2026-0257) Under Active ExploitationGlobalProtect VPN Bypass (CVE-2026-0257) Under Active Exploitation
TL;DR
- •A critical auth bypass flaw in Palo Alto GlobalProtect VPN is now being actively exploited.
- •The vulnerability stems from improper validation of authentication override cookies and relies on certificate reuse.
- •Immediate patching or mitigation – disabling override cookies or using separate certificates – is crucial.
source:
Read full post End of results for this topic.