9.1

CVE-2026-0257

Warning
Media report

PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection.

Panorama and Cloud NGFW are not impacted by these issues.
Data is provided by the National Vulnerability Database (NVD)
PaloaltonetworksPan-os Version < 10.2.7
PaloaltonetworksPan-os Version10.2.7 Update-
PaloaltonetworksPan-os Version10.2.7 Updateh1
PaloaltonetworksPan-os Version10.2.7 Updateh12
PaloaltonetworksPan-os Version10.2.7 Updateh16
PaloaltonetworksPan-os Version10.2.7 Updateh18
PaloaltonetworksPan-os Version10.2.7 Updateh19
PaloaltonetworksPan-os Version10.2.7 Updateh21
PaloaltonetworksPan-os Version10.2.7 Updateh24
PaloaltonetworksPan-os Version10.2.7 Updateh3
PaloaltonetworksPan-os Version10.2.7 Updateh32
PaloaltonetworksPan-os Version10.2.7 Updateh6
PaloaltonetworksPan-os Version10.2.7 Updateh8
PaloaltonetworksPan-os Version10.2.8
PaloaltonetworksPan-os Version10.2.9
PaloaltonetworksPan-os Version10.2.10 Update-
PaloaltonetworksPan-os Version10.2.10 Updateh10
PaloaltonetworksPan-os Version10.2.10 Updateh12
PaloaltonetworksPan-os Version10.2.10 Updateh14
PaloaltonetworksPan-os Version10.2.10 Updateh17
PaloaltonetworksPan-os Version10.2.10 Updateh18
PaloaltonetworksPan-os Version10.2.10 Updateh2
PaloaltonetworksPan-os Version10.2.10 Updateh21
PaloaltonetworksPan-os Version10.2.10 Updateh27
PaloaltonetworksPan-os Version10.2.10 Updateh3
PaloaltonetworksPan-os Version10.2.10 Updateh30
PaloaltonetworksPan-os Version10.2.10 Updateh31
PaloaltonetworksPan-os Version10.2.10 Updateh4
PaloaltonetworksPan-os Version10.2.10 Updateh5
PaloaltonetworksPan-os Version10.2.10 Updateh7
PaloaltonetworksPan-os Version10.2.10 Updateh9
PaloaltonetworksPan-os Version10.2.11
PaloaltonetworksPan-os Version10.2.12
PaloaltonetworksPan-os Version10.2.13 Update-
PaloaltonetworksPan-os Version10.2.13 Updateh1
PaloaltonetworksPan-os Version10.2.13 Updateh10
PaloaltonetworksPan-os Version10.2.13 Updateh16
PaloaltonetworksPan-os Version10.2.13 Updateh18
PaloaltonetworksPan-os Version10.2.13 Updateh2
PaloaltonetworksPan-os Version10.2.13 Updateh3
PaloaltonetworksPan-os Version10.2.13 Updateh4
PaloaltonetworksPan-os Version10.2.13 Updateh5
PaloaltonetworksPan-os Version10.2.13 Updateh7
PaloaltonetworksPan-os Version10.2.14
PaloaltonetworksPan-os Version10.2.15
PaloaltonetworksPan-os Version10.2.16 Update-
PaloaltonetworksPan-os Version10.2.16 Updateh1
PaloaltonetworksPan-os Version10.2.16 Updateh4
PaloaltonetworksPan-os Version10.2.16 Updateh6
PaloaltonetworksPan-os Version10.2.17
PaloaltonetworksPan-os Version10.2.18 Update-
PaloaltonetworksPan-os Version10.2.18 Updateh1
PaloaltonetworksPan-os Version10.2.18 Updateh5
PaloaltonetworksPan-os Version11.1.0
PaloaltonetworksPan-os Version11.1.1
PaloaltonetworksPan-os Version11.1.2
PaloaltonetworksPan-os Version11.1.3
PaloaltonetworksPan-os Version11.1.4 Update-
PaloaltonetworksPan-os Version11.1.4 Updateh1
PaloaltonetworksPan-os Version11.1.4 Updateh13
PaloaltonetworksPan-os Version11.1.4 Updateh15
PaloaltonetworksPan-os Version11.1.4 Updateh16
PaloaltonetworksPan-os Version11.1.4 Updateh17
PaloaltonetworksPan-os Version11.1.4 Updateh18
PaloaltonetworksPan-os Version11.1.4 Updateh25
PaloaltonetworksPan-os Version11.1.4 Updateh27
PaloaltonetworksPan-os Version11.1.4 Updateh32
PaloaltonetworksPan-os Version11.1.4 Updateh4
PaloaltonetworksPan-os Version11.1.4 Updateh7
PaloaltonetworksPan-os Version11.1.4 Updateh9
PaloaltonetworksPan-os Version11.1.5
PaloaltonetworksPan-os Version11.1.6 Update-
PaloaltonetworksPan-os Version11.1.6 Updateh1
PaloaltonetworksPan-os Version11.1.6 Updateh10
PaloaltonetworksPan-os Version11.1.6 Updateh14
PaloaltonetworksPan-os Version11.1.6 Updateh17
PaloaltonetworksPan-os Version11.1.6 Updateh19
PaloaltonetworksPan-os Version11.1.6 Updateh2
PaloaltonetworksPan-os Version11.1.6 Updateh20
PaloaltonetworksPan-os Version11.1.6 Updateh21
PaloaltonetworksPan-os Version11.1.6 Updateh22
PaloaltonetworksPan-os Version11.1.6 Updateh23
PaloaltonetworksPan-os Version11.1.6 Updateh25
PaloaltonetworksPan-os Version11.1.6 Updateh29
PaloaltonetworksPan-os Version11.1.6 Updateh3
PaloaltonetworksPan-os Version11.1.6 Updateh4
PaloaltonetworksPan-os Version11.1.6 Updateh5
PaloaltonetworksPan-os Version11.1.6 Updateh6
PaloaltonetworksPan-os Version11.1.6 Updateh7
PaloaltonetworksPan-os Version11.1.7 Update-
PaloaltonetworksPan-os Version11.1.7 Updateh1
PaloaltonetworksPan-os Version11.1.7 Updateh2
PaloaltonetworksPan-os Version11.1.7 Updateh4
PaloaltonetworksPan-os Version11.1.8
PaloaltonetworksPan-os Version11.1.9
PaloaltonetworksPan-os Version11.1.10 Update-
PaloaltonetworksPan-os Version11.1.10 Updateh1
PaloaltonetworksPan-os Version11.1.10 Updateh10
PaloaltonetworksPan-os Version11.1.10 Updateh12
PaloaltonetworksPan-os Version11.1.10 Updateh21
PaloaltonetworksPan-os Version11.1.10 Updateh4
PaloaltonetworksPan-os Version11.1.10 Updateh5
PaloaltonetworksPan-os Version11.1.10 Updateh7
PaloaltonetworksPan-os Version11.1.10 Updateh9
PaloaltonetworksPan-os Version11.1.11
PaloaltonetworksPan-os Version11.1.12
PaloaltonetworksPan-os Version11.1.13 Update-
PaloaltonetworksPan-os Version11.1.13 Updateh1
PaloaltonetworksPan-os Version11.1.13 Updateh2
PaloaltonetworksPan-os Version11.1.13 Updateh3
PaloaltonetworksPan-os Version11.1.14 Update-
PaloaltonetworksPan-os Version11.2.0
PaloaltonetworksPan-os Version11.2.1
PaloaltonetworksPan-os Version11.2.2
PaloaltonetworksPan-os Version11.2.3
PaloaltonetworksPan-os Version11.2.4 Update-
PaloaltonetworksPan-os Version11.2.4 Updateh1
PaloaltonetworksPan-os Version11.2.4 Updateh10
PaloaltonetworksPan-os Version11.2.4 Updateh11
PaloaltonetworksPan-os Version11.2.4 Updateh12
PaloaltonetworksPan-os Version11.2.4 Updateh14
PaloaltonetworksPan-os Version11.2.4 Updateh15
PaloaltonetworksPan-os Version11.2.4 Updateh2
PaloaltonetworksPan-os Version11.2.4 Updateh4
PaloaltonetworksPan-os Version11.2.4 Updateh5
PaloaltonetworksPan-os Version11.2.4 Updateh6
PaloaltonetworksPan-os Version11.2.4 Updateh7
PaloaltonetworksPan-os Version11.2.4 Updateh8
PaloaltonetworksPan-os Version11.2.4 Updateh9
PaloaltonetworksPan-os Version11.2.5
PaloaltonetworksPan-os Version11.2.6
PaloaltonetworksPan-os Version11.2.7 Update-
PaloaltonetworksPan-os Version11.2.7 Updateh1
PaloaltonetworksPan-os Version11.2.7 Updateh10
PaloaltonetworksPan-os Version11.2.7 Updateh11
PaloaltonetworksPan-os Version11.2.7 Updateh12
PaloaltonetworksPan-os Version11.2.7 Updateh13
PaloaltonetworksPan-os Version11.2.7 Updateh2
PaloaltonetworksPan-os Version11.2.7 Updateh3
PaloaltonetworksPan-os Version11.2.7 Updateh4
PaloaltonetworksPan-os Version11.2.7 Updateh7
PaloaltonetworksPan-os Version11.2.7 Updateh8
PaloaltonetworksPan-os Version11.2.8
PaloaltonetworksPan-os Version11.2.9
PaloaltonetworksPan-os Version11.2.10 Update-
PaloaltonetworksPan-os Version11.2.10 Updateh1
PaloaltonetworksPan-os Version11.2.10 Updateh2
PaloaltonetworksPan-os Version11.2.10 Updateh3
PaloaltonetworksPan-os Version11.2.10 Updateh4
PaloaltonetworksPan-os Version11.2.10 Updateh5
PaloaltonetworksPan-os Version11.2.10 Updateh6
PaloaltonetworksPan-os Version11.2.11 Update-
PaloaltonetworksPan-os Version12.1.2
PaloaltonetworksPan-os Version12.1.3
PaloaltonetworksPan-os Version12.1.4 Update-
PaloaltonetworksPan-os Version12.1.4 Updateh2
PaloaltonetworksPan-os Version12.1.4 Updateh3
PaloaltonetworksPan-os Version12.1.4 Updateh5
PaloaltonetworksPan-os Version12.1.5
PaloaltonetworksPan-os Version12.1.6
PaloaltonetworksPrisma Access Version-
   PaloaltonetworksPan-os Version >= 10.2.0 < 10.2.10
   PaloaltonetworksPan-os Version >= 11.2.0 < 11.2.7
   PaloaltonetworksPan-os Version10.2.10 Update-
   PaloaltonetworksPan-os Version10.2.10 Updateh10
   PaloaltonetworksPan-os Version10.2.10 Updateh12
   PaloaltonetworksPan-os Version10.2.10 Updateh14
   PaloaltonetworksPan-os Version10.2.10 Updateh17
   PaloaltonetworksPan-os Version10.2.10 Updateh18
   PaloaltonetworksPan-os Version10.2.10 Updateh2
   PaloaltonetworksPan-os Version10.2.10 Updateh21
   PaloaltonetworksPan-os Version10.2.10 Updateh27
   PaloaltonetworksPan-os Version10.2.10 Updateh3
   PaloaltonetworksPan-os Version10.2.10 Updateh30
   PaloaltonetworksPan-os Version10.2.10 Updateh31
   PaloaltonetworksPan-os Version10.2.10 Updateh4
   PaloaltonetworksPan-os Version10.2.10 Updateh5
   PaloaltonetworksPan-os Version10.2.10 Updateh7
   PaloaltonetworksPan-os Version10.2.10 Updateh9
   PaloaltonetworksPan-os Version11.2.7 Update-
   PaloaltonetworksPan-os Version11.2.7 Updateh1
   PaloaltonetworksPan-os Version11.2.7 Updateh10
   PaloaltonetworksPan-os Version11.2.7 Updateh11
   PaloaltonetworksPan-os Version11.2.7 Updateh12
   PaloaltonetworksPan-os Version11.2.7 Updateh2
   PaloaltonetworksPan-os Version11.2.7 Updateh3
   PaloaltonetworksPan-os Version11.2.7 Updateh4
   PaloaltonetworksPan-os Version11.2.7 Updateh7
   PaloaltonetworksPan-os Version11.2.7 Updateh8
VulnDex Vulnerability Enrichment
This information is available to logged-in users. Login Login

29.05.2026: CISA Known Exploited Vulnerabilities (KEV) Catalog

Palo Alto Networks PAN-OS Authentication Bypass Vulnerability

Vulnerability

Palo Alto Networks PAN-OS contains an authentication bypass vulnerability that allows attackers to bypass security restrictions and establish an unauthorized VPN connection.

Description

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Required actions
EPSS Metrics
Type Source Score percentile
EPSS FIRST.org 58.79% 0.983
CVSS Metrics
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.1 3.9 5.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
psirt@paloaltonetworks.com 7.8 0 0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:H/SI:H/SA:N/E:A/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:A/V:D/RE:M/U:Red
CWE-565 Reliance on Cookies without Validation and Integrity Checking

The product relies on the existence or values of cookies when performing security-critical operations, but it does not properly ensure that the setting is valid for the associated user.

Für Zugriff zu Vulnerablity Intelligence ist ein VulnDex Zugang erforderlich.
Media Report
05.06.2026 12:48
Für Zugriff zu Vulnerablity Intelligence ist ein VulnDex Zugang erforderlich.
Media Report
05.06.2026 12:47
Für Zugriff zu Vulnerablity Intelligence ist ein VulnDex Zugang erforderlich.
Media Report
05.06.2026 12:47
Für Zugriff zu Vulnerablity Intelligence ist ein VulnDex Zugang erforderlich.
Media Report
05.06.2026 12:47
https://cert-portal.siemens.com/productcert/html/ssa-967325.html
Third Party Advisory
https://security.paloaltonetworks.com/CVE-2026-0257
Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-0257
US Government Resource