CVE-2025-4618: Palo Alto Networks Prisma Browser

Medium severity, CVSS 4.4. EPSS: 0.1% chance of exploitation in the next 30 days.

A sensitive information disclosure vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user to retrieve sensitive data from Prisma Browser. Browser self-protection should be enabled to mitigate this issue.

Affected products

Published 2025-11-14. Last modified 2026-10-07.