Race Condition in Palo Alto Networks GlobalProtect™ Client for macOS
CVE-2026-0295
4.1MEDIUM
Key Information:
- Vendor
Palo Alto Networks
- Status
- Vendor
- CVE Published:
- 13 August 2026
Badges
👾 Exploit Exists
What is CVE-2026-0295?
A vulnerability exists in the Palo Alto Networks GlobalProtect™ Client on macOS due to a race condition, which allows a locally authenticated attacker with low privileges to escalate their privileges to root. This flaw does not affect the GlobalProtect app on Linux, Windows, iOS, Android, or Chrome OS, making it crucial for macOS users to address this issue promptly to secure their systems against potential exploitation.
Affected Version(s)
GlobalProtect App macOS 6.3.0 < 6.3.3-h14 (6.3.3-1121)
GlobalProtect App macOS 6.2.0 < 6.2.8-h13 (6.2.8-1045)
GlobalProtect App macOS 6.0.0 < 6.0.15
References
CVSS V4
Score:
4.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Alex Bourla and Graham Brereton