Palo Alto GlobalProtect VPN Vulnerability Actively Exploited, CISA Issues Warning
Unauthenticated attackers are actively exploiting a high-severity authentication bypass vulnerability (CVE-2026-0257) in Palo Alto Networks’ GlobalProtect VPN. CISA has added the flaw to its KEV.