Information Disclosure Vulnerability in Palo Alto Networks Prisma Browser
CVE-2026-0290

0.5LOW

Key Information:

Vendor
CVE Published:
13 August 2026

Badges

👾 Exploit Exists

What is CVE-2026-0290?

An information disclosure vulnerability has been identified in the Account Protection feature of Palo Alto Networks Prisma® Browser. This flaw allows a local attacker to gain unauthorized access to sensitive data, potentially leading to further exploitation. Organizations using Prisma Browser should assess their security posture and apply relevant safeguards to mitigate the risks associated with this vulnerability. For more information, refer to the vendor's advisory.

Affected Version(s)

Prisma Browser 0 < 148.18.4.217

References

CVSS V4

Score:
0.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Palo Alto Networks thanks Thomas Villanueva for discovering and reporting this issue.
.