Palo Alto patches a worrying security issue which could crash your firewall without even logging in Palo Alto patches a worrying security issue which could crash your firewall without even logging in

Palo Alto patches a worrying security issue which could crash your firewall without even logging in



  • Palo Alto patched CVE-2026-0227, a DoS flaw in GlobalProtect Gateway and Portal
  • Vulnerability could force firewalls into maintenance mode; severity rated 7.7/10
  • Cloud NGFW unaffected; patches required as no workarounds exist, no abuse reported yet

Palo Alto says it has fixed a high-severity vulnerability in some of its products that allowed malicious actors to run Denial of Service (DoS) attacks and place the compromised instances in maintenance mode.

In a security advisory, the cybersecurity company said it discovered a denial-of-service vulnerability in GlobalProtect Gateway and Portal. GlobalProtect is the company’s remote access VPN system, with Portal and Gateway being its main two components.