U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2026-0251

Change History

Initial Analysis by NIST 7/14/2026 12:40:02 PM

Action Type Old Value New Value
Added CVSS V3.1

                  
                
              
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Added CPE Configuration

                  
                
              
OR
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:* versions from (including) 6.3.0 up to (excluding) 6.3.3
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:macos:*:* versions from (including) 6.3.0 up to (excluding) 6.3.3
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:macos:*:* versions from (including) 6.2.0 up to (excluding) 6.2.8
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.2.8:-:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.2.8:h1:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:-:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:macos:*:* versions from (including) 6.0.0 up to (excluding) 6.0.13
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:* versions from (including) 6.0.0 up to (excluding) 6.0.13
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:* versions from (including) 6.2.0 up to (excluding) 6.2.8
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.2.8:-:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.2.8:h7:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.2.8:h7:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:-:*:*:*:linux:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:-:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h1:*:*:*:linux:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h1:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h2:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h2:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h3:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h3:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h4:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h4:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h6:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h6:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h7:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h7:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h8:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h8:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h9:*:*:*:macos:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:linux:*:* versions from (including) 6.0.0 up to (excluding) 6.0.11
          *cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:linux:*:* versions from (including) 6.3.0 up to (excluding) 6.3.3
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h1:*:*:*:windows:*:*
          *cpe:2.3:a:paloaltonetworks:globalprotect:6.3.3:h9:*:*:*:windows:*:*
Added Reference Type

                  
                
              
Palo Alto Networks, Inc.: https://security.paloaltonetworks.com/CVE-2026-0251 Types: Vendor Advisory