Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-0296

Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtect™ app enable an unauthenticated attacker with man-in-the-middle (MitM) access to intercept and modify application communications. VPN tunnel traffic is not impacted. The GlobalProtect app on iOS, Android, and Chrome OS is not affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 0.6%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2026-0296


Contact Us

Shodan ® - All rights reserved