Prisma Access Agent Linux Local Info Disclosure CVE-2026-0305
CVE-2026-0305 Published on September 10, 2026
Prisma Access Agent: Information Disclosure Vulnerability on Linux
An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials.
The Prisma Access Agent on macOS, Windows, iOS, Android and Chrome OS is not affected.
Vulnerability Analysis
CVE-2026-0305 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity and availability.
Timeline
Initial Publication
Weakness Type
What is an Information Disclosure Vulnerability?
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
CVE-2026-0305 has been classified to as an Information Disclosure vulnerability or weakness.
Products Associated with CVE-2026-0305
Want to know whenever a new CVE is published for Palo Alto Networks Prisma Access Agent? stack.watch will email you.
Affected Versions
Palo Alto Networks Prisma Access Agent:- Version 24.0 and below 26.2 is affected.
- Version All and below 6.3.3-h15 is unaffected.