CVE-2026-0296 - GlobalProtect App: Improper Certificate Validation Bypass Vulnerability
Brief
CVE ID : CVE-2026-0296
Published : Aug. 13, 2026, 1:59 a. m.
- 1 hour, 5 minutes ago
Description : Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtect™ app enable an unauthenticated attacker with man-in-the-middle (MitM) access to intercept and modify application communications. VPN tunnel traffic is not impacted.
The GlobalProtect app on iOS, Android, and Chrome OS is not affected.
Severity: 4.5
- MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
