LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-0251

paloaltonetworks · globalprotect

Published
CVSS7.8
Severityhigh
WeaknessCWE-426
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges. The GlobalProtect app on iOS, Android, Chrome OS and GlobalProtect UWP app are not affected.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-0251

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-0251.