Prisma Browser Palo Alto Networks Prisma Browser

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Palo Alto Networks Prisma Browser.

By the Year

In 2026 there have been 3 vulnerabilities in Palo Alto Networks Prisma Browser. Last year, in 2025 Prisma Browser had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Prisma Browser in 2026 could surpass last years number.

Year Vulnerabilities Average Score
2026 3 0.00
2025 3 0.00

It may take a day or so for new Prisma Browser vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Palo Alto Networks Prisma Browser Security Vulnerabilities

Race Condition in Prisma Browser Allows Local User to Bypass Policies
CVE-2026-0235 - May 13, 2026

A race condition vulnerability in Palo Alto Networks Prisma® Browser enables a locally authenticated non-admin user to bypass certain access and data control policies.

Improper Check for Unusual or Exceptional Conditions

Code Injection via AppleScript in Palo Alto Prisma Browser (macOS)
CVE-2026-0236 - May 13, 2026

A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its AppleScript interface allowing a locally authenticated non-admin user to leverage this exposed Apple Event handler to send unauthorized commands to the browser.

Code Injection

Palo Alto Networks Prisma Browser Auth CmdInv via AutoBr (CVE-2026-0237)
CVE-2026-0237 - May 13, 2026

An improper protection of alternate path vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to an internal automation bridge. This allows a locally authenticated non-admin user to leverage an exposed communication channel to send unauthorized commands to the browser, bypassing security controls.

Improper Protection of Alternate Path

Sensitive Info Disclosure in Palo Alto Prisma Browser
CVE-2025-4618 - November 14, 2025

A sensitive information disclosure vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user to retrieve sensitive data from Prisma Browser. Browser self-protection should be enabled to mitigate this issue.

Cleartext Storage of Sensitive Information in Memory

Prisma Browser Windows Screenshot Bypass via Local Auth
CVE-2025-4617 - November 14, 2025

An insufficient policy enforcement vulnerability in Palo Alto Networks Prisma® Browser on Windows allows a locally authenticated non-admin user to bypass the screenshot control feature of the browser. Browser self-protection should be enabled to mitigate this issue.

Improper Protection of Alternate Path

Palo Alto Prisma Browser: Local non-admin can bypass via input val flaw
CVE-2025-4616 - November 14, 2025

An insufficient validation of an untrusted input vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user to revert the browsers security controls.

Improper Validation of Integrity Check Value

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Palo Alto Networks Prisma Browser or by Palo Alto Networks? Click the Watch button to subscribe.

subscribe