ON May 29, 2026, CISA added one new vulnerability, CVE-2026-0257, to its Known Exploited Vulnerabilities (KEV) Catalog. This vulnerability pertains to Palo Alto Networks' PAN-OS Authentication Bypass and represents a significant risk of active exploitation, particularly for federal networks. CISA emphasizes the importance of mitigating risks by adhering to the Binding Operational Directive (BOD) 22-01, which mandates remediation of identified vulnerabilities by Federal Civilian Executive Branch agencies. CISA encourages all organizations to prioritize the remediation of KEV vulnerabilities to enhance their cybersecurity posture.
CISA Adds Palo Alto PAN OS Auth Bypass CVE-2026-0257 to KEV List
CyberSIXT Evidence Panel
Source marked as original reporting
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
CVE-2026-0257 flaw lets hackers bypass Palo Alto VPN auth
darkreading.com
-
Palo Alto PANOS flaw exploited days after patch release
securityweek.com
-
CISA flags PAN-OS flaw CVE-2026-0257 as attackers bypass VPN auth
securityaffairs.com
-
Attackers Exploit CVE-2026-0257 in Palo Alto GlobalProtect VPN
infosecurity-magazine.com
-
Critical FreeBSD Kernel Buffer Overflow Disclosed: Public Details & PoC Out
securityonline.info
-
CVE-2026-0257 flaw lets attackers hijack Palo Alto VPN logins
securityaffairs.com
-
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
thehackernews.com
-
CISA Adds Palo Alto PAN OS Auth Bypass CVE-2026-0257 to KEV List
www.cisa.gov