LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-0246

paloaltonetworks · prisma access agent

Published
CVSS7.8
Severityhigh
WeaknessCWE-862
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrative user to escalate their privileges to root on macOS and Linux or NT AUTHORITY\SYSTEM on Windows. This allows the user to execute arbitrary code and read sensitive information otherwise accessible only to privileged accounts. The Prisma Access Agent on iOS, Android and Chrome OS are not affected.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-0246

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-0246.