Active Exploitation of PAN-OS GlobalProtect Authentication Bypass Vulnerability

A medium-severity vulnerability in PAN-OS and Prisma Access has been confirmed to be actively exploited, allowing unauthorized VPN connections.

A medium-severity vulnerability in PAN-OS and Prisma Access has been confirmed to be actively exploited, allowing unauthorized VPN connections.

Cisco has identified a severe authentication bypass vulnerability in its Catalyst SD-WAN Controller, which is currently being exploited in limited attacks. The flaw, tracked as CVE-2026-20182, allows unauthorized remote access to administrative privileges.

A serious security flaw in nginx-ui, an open-source management tool for Nginx, has been disclosed and is currently being exploited. This vulnerability allows attackers to take control of Nginx servers without authentication.