CVE-2026-0305: Palo Alto Networks Prisma Access Agent
Medium severity, CVSS 4.3. EPSS: 0.1% chance of exploitation in the next 30 days.
An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. The Prisma Access Agent on macOS, Windows, iOS, Android and Chrome OS is not affected.
Affected products
- Palo Alto Networks Prisma Access Agent: from 24.0, before 26.2 (fixed in 26.2)
Published 2026-09-10. Last modified 2026-09-10.