security.paloaltonetworks.com Multiple Vulnerabilities in Palo Alto Networks GlobalProtect App Disclosed
Article Content
- •Four critical vulnerabilities disclosed in Palo Alto Networks GlobalProtect app.
- •Exploits could allow attackers to execute arbitrary code with elevated privileges.
- •Users are advised to upgrade to the latest app versions to mitigate risks.
On August 14, 2026, Palo Alto Networks disclosed four critical vulnerabilities (CVE-2026-0296, CVE-2026-0297, CVE-2026-0298, CVE-2026-0299) in the GlobalProtect app affecting Windows, macOS, and Linux systems. These vulnerabilities include a buffer overflow, improper certificate validation, local privilege escalation, and improper input validation. Attackers could exploit these vulnerabilities to execute arbitrary code with elevated privileges, impacting system security. The vulnerabilities do not affect the GlobalProtect app on iOS, Android, or Chrome OS. Palo Alto Networks is not aware of any active exploitation of these issues. Users are advised to upgrade to the latest versions of the GlobalProtect app to mitigate risks. Specific versions affected include 6.0.0 through 6.3.3-h14 across various platforms. The CVSS scores range from 4.5 to 8.5, indicating varying levels of severity.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…