Palo Alto Networks Palo Alto Networks

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in any Palo Alto Networks product.

RSS Feeds for Palo Alto Networks security vulnerabilities

Create a CVE RSS feed including security vulnerabilities found in Palo Alto Networks products with stack.watch. Just hit watch, then grab your custom RSS feed url.

Products by Palo Alto Networks Sorted by Most Security Vulnerabilities since 2018

Palo Alto Networks PAN-OS190 vulnerabilities
PAN-OS is the software that runs all Palo Alto Networks next-generation firewalls.

Palo Alto Networks Expedition14 vulnerabilities

By the Year

In 2026 there have been 79 vulnerabilities in Palo Alto Networks with an average score of 3.9 out of ten. Last year, in 2025 Palo Alto Networks had 32 security vulnerabilities published. That is, 47 more vulnerabilities have already been reported in 2026 as compared to last year. Last year, the average CVE base score was greater by 2.19




Year Vulnerabilities Average Score
2026 79 3.93
2025 32 6.12
2024 50 6.58
2023 15 5.39
2022 9 6.47
2021 30 6.56
2020 61 6.83
2019 24 6.79
2018 11 5.66

It may take a day or so for new Palo Alto Networks vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Palo Alto Networks Security Vulnerabilities

CVE Date Vulnerability Products
CVE-2026-0302 Sep 10, 2026
Palo Alto Networks Checkov OS Command Injection Allows Local User Execution An OS command injection vulnerability in Palo Alto Networks Checkov by Prisma® Cloud enables a local user to execute arbitrary commands in the processes running Checkov.
Checkov By Prisma Cloud
CVE-2026-0303 Sep 10, 2026
Checkov IaC Scanner RCE via attackercontrolled config file A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Checkov scans a directory that contains an attacker-controlled configuration file.
Checkov By Prisma Cloud
CVE-2026-0304 Sep 10, 2026
Privilege Escalation in Palo Alto Cortex XDR Broker VM via MitM A privilege escalation vulnerability in Palo Alto Networks Cortex XDR Broker VM enables an authenticated low privileged user with man-in-the-middle (MitM) access to execute code with root privileges on the Broker VM.
Cortex Xdr Broker Vm
CVE-2026-0305 Sep 10, 2026
Prisma Access Agent Linux Local Info Disclosure CVE-2026-0305 An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. The Prisma Access Agent on macOS, Windows, iOS, Android and Chrome OS is not affected.
Prisma Access Agent
CVE-2026-0306 Sep 10, 2026
Local User Bypass of DLP Enforcement in Palo Alto Prisma Access Agent A vulnerability in the EndPoint Data Loss Prevention (DLP) enforcement of Palo Alto Networks Prisma® Access Agent enables a local user to bypass configured DLP policy enforcement controls and exfiltrate sensitive data. This Prisma Access Agent on macOS, Linux, iOS, Android and Chrome OS is not affected.
Prisma Access Agent
CVE-2026-0307 Sep 10, 2026
Palo Alto GlobalProtect App Local Privilege Escalation (CVE-2026-0307) Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect app allows a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges. This GlobalProtect app on iOS, Android and ChromeOS is not impacted.
Globalprotect App
CVE-2026-0308 Sep 10, 2026
Palo Alto PAN-OS Stored XSS via Web Interface (Authenticated Admin) A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store or execute a JavaScript payload using the web interface. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not affected by this vulnerability.
PAN-OS
CVE-2026-0309 Sep 10, 2026
Palo Alto PAN-OS CLI Command Injection (CVE-2026-0309) A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI and the device must be configured with a Luna Hardware Security Module (HSM). The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0310 Sep 10, 2026
Panorama: XML Buffer Overflow in PAN-OS Causes DoS & Escalation A buffer overflow vulnerability in the XML processing functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web or dataplane interface to cause a denial of service (DoS) condition on VM-Series firewalls or execute arbitrary code with root privileges on the PA-Series firewalls. The security risk posed by this issue is minimized when the management interface is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . Panorama is impacted by this vulnerability.
PAN-OS
Cloud Ngfw
Prisma Access
And others...
CVE-2026-0301 Aug 13, 2026
PAN-OS URL Filtering Info Disclosure CVE-2026-0301 An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® software enables an unauthenticated user with network access to obtain sensitive information. Panorama is not impacted by this vulnerability.
PAN-OS
Cloud Ngfw
Prisma Access
And others...
CVE-2026-0299 Aug 13, 2026
Priv Esc in Palo Alto GlobalProtect App on Desktop OS Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect app enable a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows, and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges. The GlobalProtect app on iOS, Android, and Chrome OS is not affected.
Globalprotect App
CVE-2026-0298 Aug 13, 2026
Windows PLAP Improper Input Validation in Palo Alto GlobalProtect RCE via MitM An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto Networks GlobalProtect app on Windows devices which enables a man-in-the-middle (MitM) attacker to execute arbitrary code with SYSTEM privileges on an affected client. The GlobalProtect app on Linux, macOS, iOS, Android, and Chrome OS is not affected.
Globalprotect App
CVE-2026-0297 Aug 13, 2026
GlobalProtect Buffer Overflow Enables MitM Priv Esc A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect app that enables a man-in-the-middle (MitM) attacker or a rogue gateway to disrupt system processes and potentially execute arbitrary code with elevated privileges (SYSTEM privileges on Windows, and root privileges on macOS and Linux).
Globalprotect App
CVE-2026-0296 Aug 13, 2026
GlobalProtect Improper Certificate Validation Enables Unauth MitM Attack Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtect app enable an unauthenticated attacker with man-in-the-middle (MitM) access to intercept and modify application communications. VPN tunnel traffic is not impacted. The GlobalProtect app on iOS, Android, and Chrome OS is not affected.
Globalprotect App
CVE-2026-0295 Aug 13, 2026
Local Privilege Escalation in Palo Alto GlobalProtect Client (macOS) A race condition in the Palo Alto Networks GlobalProtect client on macOS enables a locally authenticated low-privileged attacker to escalate their privileges to root. The GlobalProtect app on Linux, Windows, iOS, Android, and Chrome OS is not affected.
Globalprotect App
CVE-2026-0294 Aug 13, 2026
Privilege Escalation in Palo Alto Prisma Access Agent (Win/macOS) A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Windows and macOS devices enables a local user to execute code with elevated privileges. The Prisma Access Agent on Linux, iOS, Android, and ChromeOS is not affected.
Prisma Access Agent
CVE-2026-0293 Aug 13, 2026
AntiTamper Bypass in Palo Alto Prisma Access Agent (Windows) A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a local attacker with administrator privileges to bypass the anti-tamper protection, enabling unauthorized access to protected processes and files. The Prisma Access Agent on Linux, macOS, iOS, Android, and Chrome OS is not affected.
Prisma Access Agent
CVE-2026-0292 Aug 13, 2026
Auth Bypass in Palo Alto Networks Prisma Access Agent NetDrv on Windows An authentication bypass vulnerability in the network driver of Palo Alto Networks Prisma® Access Agent on Windows enables a local administrator to bypass security inspection, subsequently allowing them to inject and intercept arbitrary network traffic. The Prisma Access Agent on Linux, macOS, iOS, Android, and Chrome OS is not affected.
Prisma Access Agent
CVE-2026-0291 Aug 13, 2026
Palo Alto Prisma Access Agent Linux Improper Link Resolution File Delete Vulnerability An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma Access Agent. The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected.
Prisma Access Agent
CVE-2026-0290 Aug 13, 2026
Local Info Disclosure via Account Protection in Palo Alto Prisma Browser An information disclosure vulnerability in the Account Protection feature of Palo Alto Networks Prisma® Browser enables a local attacker to view sensitive data.
Prisma Browser
CVE-2026-0289 Aug 13, 2026
Prisma Browser Account Protection Bypass A security bypass vulnerability in the Account Protection feature of Palo Alto Networks Prisma® Browser enables a user to bypass intended security controls.
Prisma Browser
CVE-2026-0275 Jul 09, 2026
PrivEsc in Palo Alto Prisma Browser macOS via Local Admin File Access A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administrator with access to the macOS local filesystem to perform actions on the device with root privileges. This issue only affects Prisma® Browser on macOS.
Prisma Browser
CVE-2026-0276 Jul 09, 2026
Cortex XDR Broker VM PrivEsc to Root via Local Auth A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions as the root user.
Cortex Xdr Broker Vm
CVE-2026-0277 Jul 09, 2026
Improper Cert Validation in Prisma Access Agent iOS Enables MitM An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS, Linux, Android and ChromeOS are not affected.
Prisma Access Agent
CVE-2026-0278 Jul 09, 2026
Prisma Access Agent DLP Bypass via Local User on Windows Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.
Prisma Access Agent
CVE-2026-0279 Jul 09, 2026
XSS in PAN-OS User-ID Portal & GlobalProtect Multiple cross site scripting vulnerabilities in the User-ID Authentication Portal (aka Captive Portal) service, GlobalProtect gateway/portal features and Clientless VPN of Palo Alto Networks PAN-OS® software enables a malicious unauthenticated user to store or execute malicious JavaScript payload. The security risk posed by this issue is minimized when the management interface and access to the User-ID Authentication Portal is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW is not affected by this vulnerability.
PAN-OS
Prisma Access
CVE-2026-0280 Jul 09, 2026
PAN-OS IPv6 Stack Bypass in Dataplane Enables Policy Evasion An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be blocked to reach protected services. Cloud NGFW and Panorama are not impacted by this vulnerability.
PAN-OS
Prisma Access
CVE-2026-0281 Jul 09, 2026
Palo Alto PAN-OS Web Session Token Disclosure via Malicious Link An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to obtain web session tokens. This requires a legitimate user to first click on a malicious link provided by the attacker. The security risk posed by this issue is minimized by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0282 Jul 09, 2026
Unauthenticated File Deletion via PAN-OS Web UI A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to delete files from a temporary directory. The security risk posed by this issue is minimized by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0283 Jul 09, 2026
Auth Bypass in Palo Alto PAN-OS LSVPN An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized site-to-site VPN connection. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0284 Jul 09, 2026
XML Injection in LSVPN Component of Palo Alto PAN-OS An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially leading to information disclosure or corruption of internal LSVPN satellite data. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0285 Jul 09, 2026
SSRF in PAN-OS Management Web Interface A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the firewall to internal services. The security risk posed by this issue is minimized when the management interface is restricted to only trusted internal IP addresses according to our recommended  best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 .  Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0286 Jul 09, 2026
Command Injection in Palo Alto PANOS Admin Interface A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma Access® are not impacted by this vulnerability.
PAN-OS
CVE-2026-0287 Jul 09, 2026
Unauthenticated DoS in PAN-OS Data Plane via Crafted Traffic Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to or through a dataplane interface. Repeated attempts to trigger this condition result in the firewall entering maintenance mode. Panorama is not impacted by these vulnerabilities.
PAN-OS
Cloud Ngfw
Prisma Access
And others...
CVE-2026-0288 Jul 08, 2026
Buffer Overflows in Palo Alto User-ID TSA Cause DoS/RCE Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic. The security risk posed by this issue is minimized when the User-ID Terminal Server Agent connectivity is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://docs.paloaltonetworks.com/ngfw/help/10-2/user-identification/device-user-identification-terminal-services-agents#:~:text=To%20minimize%20security%20risk%2C%20restrict%20TS%20Agent%20connectivity%20to%20trusted%20internal%20IP%20addresses%20only. . Panorama is not impacted by this vulnerability.
PAN-OS
Prisma Access
CVE-2026-0274 Jun 10, 2026
Improper credential validation in CommvaultSecurityIQ XSOAR integration An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.
Cortex Xsiam Commvaultsecurityiq Marketplace
Cortex Xsoar Commvaultsecurityiq Marketplace
CVE-2026-0273 Jun 10, 2026
PAN-OS Command Injection Escalation to Root via CLI/Web UI A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators and by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not affected by this vulnerability.
PAN-OS
CVE-2026-0272 Jun 10, 2026
PALO ALTO PAN-OS CLI PrivEsc (CVE-2026-0272) A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allows an authenticated administrator with access to the Command Line Interface (CLI) to perform actions on the device with root privileges. The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators and by restricting access to the management interface to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0271 Jun 10, 2026
Linux PE via Prisma Access Agent (Palo Alto) A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges. This does not impact Prisma Access Agent on Windows, macOS, iOS, Android, or ChromeOS.
Prisma Access Agent
CVE-2026-0270 Jun 10, 2026
Path traversal in Palo Alto Cortex XSOAR (Linux) allows arbitrary file write A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenticated attacker on an adjacent network, with the ability to intercept and manipulate network response traffic via a man-in-the-middle (MITM) attack, to write arbitrary files to the host.
Cortex Xsoar
CVE-2026-0269 Jun 10, 2026
PAN-OS Tunnel MemCorrupt Reboot Exploit (Authenticated) A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
PAN-OS
CVE-2026-0268 Jun 10, 2026
Prisma Access Agent Linux VPN Bypass for Local Attacker A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffic outside the VPN tunnel. This does not impact Prisma Access Agent on Windows, macOS, iOS, Android, or ChromeOS.
Prisma Access Agent
CVE-2026-0267 Jun 10, 2026
GlobalProtect macOS Passcode Disclosure Vulnerability An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is known, the user can perform these actions even if the GlobalProtect app configuration would not normally permit them to do so.
Globalprotect App
CVE-2026-0266 Jun 10, 2026
XSS in Palo Alto Networks PAN-OS UI Captures Authenticated Admin Payloads A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to PAN-OS software on PA-Series and VM-Series firewalls and on Panorama (virtual and M-Series). Cloud NGFW and Prisma® Access are not affected by this vulnerability.
PAN-OS
CVE-2026-0243 May 13, 2026
DoS via crafted IPv6 packet on Palo Alto Prisma SD-WAN ION A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.
Prisma Sd Wan Ion
CVE-2026-0248 May 13, 2026
Improper Cert Validation in Prisma Access Agent for Android Enables MitM An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information. The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.
Prisma Access Agent
CVE-2026-0242 May 13, 2026
SQLi in Trust Protection Foundation (TPF) enabling admin takeover A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.
Trust Protection Foundation
CVE-2026-0244 May 13, 2026
Improper Cert Validation in Palo Alto Networks Prisma SD-WAN ION Allows MitM An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.
Prisma Sd Wan Ion
CVE-2026-0241 May 13, 2026
Incorrect Auth Bypass in Palo Alto Trust Protection Foundation Incorrect Authorization vulnerabilities in Trust Protection Foundation allow attackers to bypass access controls and perform unauthorized actions on restricted resources.
Trust Protection Foundation
CVE-2026-0245 May 13, 2026
Prisma Access Agent Local User Info Disclosure Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. The Prisma Access Agent on Linux, ChromeOS, Android, and iOS are not affected.
Prisma Access Agent
Built by Foundeo Inc., with data from the National Vulnerability Database (NVD). Privacy Policy. Use of this site is governed by the Legal Terms
Disclaimer
CONTENT ON THIS WEBSITE IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. Always check with your vendor for the most up to date, and accurate information.