CVE-2026-0257
KEV RANSOMWARECRITICAL 9.1EPSS 93.9%
Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.
- CVSS v4.0
- 7.8 HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:H/SI:H/SA:N/E:A/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:A/V:D/RE:M/U:Red - CVSS v3.1
- 9.1 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N - EPSS
- 93.91% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2026-05-29, used in ransomware campaigns
- Nuclei
- critical · CWE-565
- Published
- 2026-05-13
- Updated
- 2026-07-14
Proof-of-concept exploits (7)
- sfewer-r7/CVE-2026-025728★ · 2026-05-29
- 0xBlackash/CVE-2026-02573★ · 2026-06-05
- tushargurav28/CVE-2026-02573★ · 2026-06-03
- akashsingh0454/CVE-2026-0257-PoC2★ · 2026-05-29
- Mr-Robot-LP/CVE-2026-02571★ · 2026-06-01
- Ez4rd1x1/CVE-2026-02570★ · 2026-06-15
- HORKimhab/CVE-2026-0257