CVE-2026-0307 GlobalProtect App: Local Privilege Escalation Vulnerabilities (Severity: MEDIUM)
Details
Original advisory: https://security.paloaltonetworks.com/CVE-2026-0307
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-0307 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
Recent advisories for GlobalProtect App
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- high[NEU] [hoch] Palo Alto Networks GlobalProtect App: Schwachstelle ermöglicht Privilegieneskalationcert-bund · 2026-09-10
- unknownCVE-2026-0307: Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ ap…nvd · 2026-09-10
- highCVE-2026-0251 GlobalProtect App: Local Privilege Escalation Vulnerabilities (Severity: HIGH)paloalto · 2026-08-27
- high[NEW] [high] Palo Alto Networks GlobalProtect App: Multiple vulnerabilitiescert-bund · 2026-08-13
- unknownCVE-2026-0299: Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enable …nvd · 2026-08-13
- unknownCVE-2026-0298: An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLA…nvd · 2026-08-13
More from Palo Alto Networks Security Advisories
- mediumCVE-2026-0306 Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows (Severity: MEDIUM)2026-09-09
- lowCVE-2026-0303 Checkov by Prisma Cloud: Code Execution via Auto-Loaded Configuration File (Severity: LOW)2026-09-09
- highPAN-SA-2026-0012 Chromium: Monthly Vulnerability Update (September 2026) (Severity: HIGH)2026-09-09
- lowCVE-2026-0302 Checkov by Prisma Cloud: OS Command Injection Vulnerability (Severity: LOW)2026-09-09
- highCVE-2026-0310 PAN-OS: Buffer Overflow Vulnerability via XML Processing (Severity: HIGH)2026-09-09