CVE-2026-0250
HIGHGlobalProtect App: Buffer Overflow Vulnerability during connection to Portal or Gateway
Title source: cnaDescription
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered during the processing of requests and responses exchanged between Portal and Gateway. The GlobalProtect app on iOS is not affected.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
https://security.paloaltonetworks.com/CVE-2026-0250
Scores
CVSS v3
8.1
EPSS
0.0039
EPSS Percentile
31.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-787
Status
published
Products (15)
Palo Alto Networks/GlobalProtect App
6.0 - 6.0.13
Palo Alto Networks/GlobalProtect App
6.0 - 6.0.14
Palo Alto Networks/GlobalProtect App
6.0.0 - 6.0.11
Palo Alto Networks/GlobalProtect App
6.1 - 6.1.13
Palo Alto Networks/GlobalProtect App
6.2.0 - 6.2.8-h10 (6.2.8-948)
Palo Alto Networks/GlobalProtect App
6.3.0 - 6.3.3-h2 (6.3.3-42)
Palo Alto Networks/GlobalProtect App
6.3.0 - 6.3.3-h9 (6.3.3-999)
Palo Alto Networks/GlobalProtect App
All
Palo Alto Networks/GlobalProtect UWP App
6.3 - 6.3.3-h10
paloaltonetworks/globalprotect
6.2.8 (5 CPE variants)
... and 5 more
Published
May 13, 2026
Tracked Since
May 14, 2026