CVE-2025-0139: Palo Alto Networks Autonomous Digital Experience Manager

Medium severity, CVSS 6.3. EPSS: 0.1% chance of exploitation in the next 30 days.

An incorrect privilege assignment vulnerability in Palo Alto Networks Autonomous Digital Experience Manager allows a locally authenticated low privileged user on macOS endpoints to escalate their privileges to root.

Affected products

  • Palo Alto Networks Autonomous Digital Experience Manager: from 5.6.0, before 5.6.7 (fixed in 5.6.7)

Published 2025-07-09. Last modified 2026-06-17.