Loading market data...
← Back to CVE feed

CVE-2026-0298

UNKNOWN View on NVD ↗

Description

An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto Networks GlobalProtect™ app on Windows devices which enables a man-in-the-middle (MitM) attacker to execute arbitrary code with SYSTEM privileges on an affected client. The GlobalProtect app on Linux, macOS, iOS, Android, and Chrome OS is not affected.

Published: Aug 13, 2026 03:16 UTC Modified: Aug 13, 2026 14:16 UTC