imPC@ndo IT

Tracker / CVE-2026-0267

CVE-2026-0267

Medium 5.5

An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is known, the user can perform these actions even if the GlobalProtect app configuration would not normally permit them to do so.

Affected products and versions

paloaltonetworks globalprotect
paloaltonetworks globalprotect · 6.2.0 → 6.2.8
paloaltonetworks globalprotect · 6.3.0 → 6.3.3

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References