Prisma Access Agent Linux Local Info Disclosure CVE-2026-0305
CVE-2026-0305 Published on September 10, 2026

Prisma Access Agent: Information Disclosure Vulnerability on Linux
An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. The Prisma Access Agent on macOS, Windows, iOS, Android and Chrome OS is not affected.

Vendor Advisory NVD

Vulnerability Analysis

CVE-2026-0305 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity and availability.

Attack Vector:
LOCAL
Attack Complexity:
LOW
Privileges Required:
LOW
User Interaction:
NONE

Timeline

Initial Publication

Weakness Type

What is an Information Disclosure Vulnerability?

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

CVE-2026-0305 has been classified to as an Information Disclosure vulnerability or weakness.


Products Associated with CVE-2026-0305

Want to know whenever a new CVE is published for Palo Alto Networks Prisma Access Agent? stack.watch will email you.

 

Affected Versions

Palo Alto Networks Prisma Access Agent: Palo Alto Networks Prisma Access Agent: