Race Condition in Palo Alto Networks GlobalProtect™ Client for macOS
CVE-2026-0295

4.1MEDIUM

Key Information:

Vendor
CVE Published:
13 August 2026

Badges

👾 Exploit Exists

What is CVE-2026-0295?

A vulnerability exists in the Palo Alto Networks GlobalProtect™ Client on macOS due to a race condition, which allows a locally authenticated attacker with low privileges to escalate their privileges to root. This flaw does not affect the GlobalProtect app on Linux, Windows, iOS, Android, or Chrome OS, making it crucial for macOS users to address this issue promptly to secure their systems against potential exploitation.

Affected Version(s)

GlobalProtect App macOS 6.3.0 < 6.3.3-h14 (6.3.3-1121)

GlobalProtect App macOS 6.2.0 < 6.2.8-h13 (6.2.8-1045)

GlobalProtect App macOS 6.0.0 < 6.0.15

References

CVSS V4

Score:
4.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Alex Bourla and Graham Brereton
.