← Back to CVE search

CVE-2026-0267

GlobalProtect

Description

An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is known, the user can perform these actions even if the GlobalProtect app configuration would not normally permit them to do so.

CVSS 5.5EPSS 0.104%Risk 0.56
View source
Published
2026-06-10 22:16:53
Affected versions
unknown
Type
Critical software
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Operating systems
MacOS