The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
No known workarounds or mitigations exist for this issue.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://security.paloaltonetworks.com/CVE-2026-0291 |
|
Thu, 13 Aug 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma Access Agent. The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected. | |
| Title | Prisma Access Agent: Authenticated Limited File Deletion on Linux | |
| First Time appeared |
Palo Alto Networks
Palo Alto Networks prisma Access Agent |
|
| Weaknesses | CWE-59 | |
| CPEs | cpe:2.3:a:palo_alto_networks:prisma_access_agent:*:*:*:*:*:Linux:*:* | |
| Vendors & Products |
Palo Alto Networks
Palo Alto Networks prisma Access Agent |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2026-08-13T01:47:59.370Z
Reserved: 2025-11-03T20:44:48.974Z
Link: CVE-2026-0291
No data.
Status : Received
Published: 2026-08-13T03:16:43.800
Modified: 2026-08-13T03:16:43.800
Link: CVE-2026-0291
No data.
OpenCVE Enrichment
Updated: 2026-08-13T06:15:15Z