CVE-2026-0305

An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. The Prisma Access Agent on macOS, Windows, iOS, Android and Chrome OS is not affected.

  • Published Sep 10, 2026
  • CVSS 4.3 medium
  • 0.1% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-0305 at the National Vulnerability Database