CVE-2026-0257

Published May 13, 2026

Last updated a day ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2026-0257 is an authentication bypass vulnerability found in the GlobalProtect portal and gateway components of Palo Alto Networks PAN-OS software. This flaw enables an attacker to circumvent security restrictions and establish an unauthorized Virtual Private Network (VPN) connection. The vulnerability stems from the system's reliance on cookies without adequate validation and integrity checking, specifically when authentication override cookies are enabled and a particular certificate configuration is in place. This issue does not impact Panorama or Cloud NGFW deployments.

Description
Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.
Source
psirt@paloaltonetworks.com
NVD status
Modified
Products
pan-os, prisma_access

Risk scores

CVSS 4.0

Type
Secondary
Base score
7.8
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:H/SI:H/SA:N/E:A/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:A/V:D/RE:M/U:Red
Severity
HIGH

CVSS 3.1

Type
Primary
Base score
9.1
Impact score
5.2
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Severity
CRITICAL

Weaknesses

psirt@paloaltonetworks.com
CWE-565

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

8

  1. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/anzyewqXt3

    @JedisecX

    31 May 2026

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Palo Alto PAN-OS Authentication Bypass Vulnerability Actively Exploited in the Wild https://t.co/cVJlBcLi9p "In response to mounting attacks, the CISA added CVE-2026-0257 to its Known Exploited Vulnerabilities (KEV) catalog on May 29, 2026."

    @catnap707

    31 May 2026

    57 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  3. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/M7mM7ZhCGZ

    @Tech_Newsletter

    31 May 2026

    17 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. PAN-OS GlobalProtect Authentication #Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/VZayJ8kIt0

    @jos1727

    30 May 2026

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. https://t.co/FqmV6ikmuj CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

    @dragonstar7722

    30 May 2026

    31 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/wns1RkestG

    @TechNowPulse

    30 May 2026

    27 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. ALERTA: Explotan CVE-2026-0257 en PAN-OS ¡Parchea ya! #byte_shield #ciberseguridad #newsfeed #hacker #infosec https://t.co/011xq3zJhl

    @wigapn2

    30 May 2026

    5 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. #PAN_OS GlobalProtect #Authentication_Bypass (CVE-2026-0257) Under Active #Exploitation https://t.co/1vQ4Bds7gR https://t.co/oOdmLZuXGX

    @omvapt

    30 May 2026

    43 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/FRfPaqVQjU

    @DeepBlueInfoSec

    30 May 2026

    43 Impressions

    0 Retweets

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

  10. CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities https://t.co/O7xxSZYxan #patchmanagement

    @eyalestrin

    30 May 2026

    50 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/2YcH9muaV7

    @RMCholewa

    30 May 2026

    41 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. 【サイバーセキュリティ動向分析】 2026年5月下旬のトレンドセキュリティニュース(最新動向) https://t.co/A2yiKclCBN +1 PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) が積極的に悪用中 https://t.co/hmqRlLQJDl (Palo Alto

    @kenebeii

    30 May 2026

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. 🔬 PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation Critical CVE / Exploit: Palo Alto Networks has warned that a recent... https://t.co/Yf0YjnLkVi #CVE #CyberSecurity #InfoSec #DataProtection

    @MyDooM15

    30 May 2026

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/anDDimMZmc

    @TheRabbitPy

    30 May 2026

    56 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  15. CVE-2026-0257 PAN-OS: GlobalProtect Authentication Bypass Vulne… KEV ✓ EPSS 0.05% CVSS 7.8 Risk 70/100 #CyberSecurity #InfoSec #Vulnerability #ThreatIntel #CVE https://t.co/qvhqeoD4cF

    @JunjieJoey

    30 May 2026

    1 Impression

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/nUaBCdUGDB

    @VivekIntel

    30 May 2026

    46 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. 【サイバーセキュリティ動向分析】 トレンドのセキュリティニュース(2026年5月30日時点) https://t.co/hmqRlLQJDl PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) が積極的に悪用中 https://t.co/hmqRlLQJDl (最新記事参照) htt

    @kenebeii

    30 May 2026

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. CVE-2026-0257: Peligrosa Vulnerabilidad de Bypass de Autenticación en GlobalProtect de Palo Alto Networks #Seguridad https://t.co/PndmvEylJP

    @yocoffy

    30 May 2026

    41 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. Top 5 Trending CVEs: 1 - CVE-2026-0257 2 - CVE-2026-48095 3 - CVE-2026-42826 4 - CVE-2026-39987 5 - CVE-2026-0265 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    30 May 2026

    107 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/XhNUZvwIgd

    @pigram86

    30 May 2026

    44 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/p3dm97izCT

    @molari999

    30 May 2026

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/sOmpCZooA5

    @wvipersg

    30 May 2026

    42 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation https://t.co/4L0nccUue8

    @TheCyberSecHub

    30 May 2026

    610 Impressions

    1 Retweet

    5 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. Recent alerts: Palo Alto Networks PAN-OS (CVE-2026-0257) has an auth bypass, impacting network integrity. DNS Client (CVE-2026-41096) RCE via crafted DNS poses data privacy & integrity risks. Patch urgently! #Cybersecurity #News #Vulnerabilities

    @YourAnon_irc

    30 May 2026

    65 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  25. 🔗 Read more: 🏛️ Palo Alto Networks PAN-OS Authentication Bypass Vulnerability 📝 CISA added CVE-2026-0257 to its KEV Catalog due to active exploitation, posing risks to... https://t.co/2QSmHxO29B 📰 Alerts #GovSec #CVE #ZeroDay

    @Bug_X_hunter

    30 May 2026

    78 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  26. 🚨 Palo Alto PAN-#OS “Auth Bypass” #CVE-2026-0257 Actively Exploited in the Wild—Patch Immediately! https://t.co/2NEhsJXkjA Educational Purposes!

    @UndercodeUpdate

    30 May 2026

    73 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. 🚨 Palo Alto Networks PAN-OS Authentication Vulnerability Bypass Exploited in the Wild Source: https://t.co/WQbusirHIq Palo Alto Networks authentication bypass vulnerability, CVE-2026-0257, affecting PAN-OS and Prisma Access, is now being actively exploited in the wild, with

    @The_Cyber_News

    30 May 2026

    2174 Impressions

    6 Retweets

    26 Likes

    12 Bookmarks

    0 Replies

    0 Quotes

  28. Cyber Heat Radar|2026/05/30 05:00 JST 今回は①Marimo CVE-2026-39987悪用の件、②CVE-2026-0257 CISA KEV追加の件、③GogsゼロデイRCE露出の件を中心に、ほか4件を含めて音声で7件扱います。

    @cyberheatradar

    29 May 2026

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  29. 🚨*CVE* CVE-2026-0257 Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions… https://t.co/uEOK2MRdLo ----- Traducción: CVE-2026-0257 Vul… https://t.co/utmtN

    @infoflowcloud

    13 May 2026

    82 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations