AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-0295

MEDIUM · CVSS 4.1 EPSS 0.08%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A race condition in the Palo Alto Networks GlobalProtect client on macOS allows a locally authenticated low-privileged attacker to escalate privileges to root, potentially compromising the entire system. Organizations using the GlobalProtect client on macOS should prioritize this vulnerability to mitigate the risk of unauthorized access and potential exploitation. Other platforms, including Linux, Windows, iOS, Android, and Chrome OS, are not affected.

CVE
CVE-2026-0295
Severity
MEDIUM
CVSS
4.1
EPSS
0.08%
Palo Alto Windows Linux Android Chrome

Original NVD Description

A race condition in the Palo Alto Networks GlobalProtectâ„¢ client on macOS enables a locally authenticated low-privileged attacker to escalate their privileges to root. The GlobalProtect app on Linux, Windows, iOS, Android, and Chrome OS is not affected.