cbcvebase.
CVE-2026-0298
published 2026-08-13

CVE-2026-0298: An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto Networks GlobalProtect™ app on…

PriorityP428medium5.2CVSS 4.0
AVAACLATPPRNUINVCHVIHVAHSCLSINSANEUCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUNRUVDREMUAmber
EPSS
0.19%
8.4th percentile
An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto Networks GlobalProtect™ app on Windows devices which enables a man-in-the-middle (MitM) attacker to execute arbitrary code with SYSTEM privileges on an affected client. The GlobalProtect app on Linux, macOS, iOS, Android, and Chrome OS is not affected.

Affected

4 ranges
VendorProductVersion rangeFixed in
palo_alto_networksglobalprotect_app>= 6.0.0 < 6.0.156.0.15
palo_alto_networksglobalprotect_app>= 6.2.0 < 6.2.8-h136.2.8-h13
palo_alto_networksglobalprotect_app>= 6.3.0 < 6.3.3-h146.3.3-h14
paloaltoglobalprotect_app
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.