The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered all federal civilian agencies to urgently remediate a critical authentication bypass vulnerability in Palo Alto Networks’ PAN-OS GlobalProtect VPN, tracked as CVE-2026-0257. The flaw, disclosed by Palo Alto Networks in a May 13, 2026 advisory with a CVSS score of 7.8, allows attackers to establish unauthorized VPN connections and access internal networks. CISA added the issue to its Known Exploited Vulnerabilities catalog and set a deadline of June 1, 2026 for federal agencies to patch or mitigate the flaw amid confirmed active exploitation, also urging private sector users to update systems promptly.
Prepared by Jonathan Pierce and reviewed by editorial team.
Esta falla de VPN podría permitir a los hackers infiltrarse en su red. Si usa GlobalProtect VPN de Palo Alto Networks, corre riesgo. No es solo un problema federal. Revise su sistema y actualícelo ahora.
Se está explotando una grave vulnerabilidad en una VPN. El gobierno federal tiene hasta el 1 de junio para solucionarlo, y tú también deberías hacerlo. Recuerda, una red segura mantiene tus datos a salvo. Vale la pena reenviarlo si conoces a alguien que utiliza esta VPN.
No especificado en el origen.
No especificado en la fuente.
No left-leaning sources found for this story.
No right-leaning sources found for this story.
Comments