Information Disclosure Vulnerability in Palo Alto Networks Prisma Browser
CVE-2026-0290
0.5LOW
Key Information:
- Vendor
Palo Alto Networks
- Status
- Vendor
- CVE Published:
- 13 August 2026
Badges
👾 Exploit Exists
What is CVE-2026-0290?
An information disclosure vulnerability has been identified in the Account Protection feature of Palo Alto Networks Prisma® Browser. This flaw allows a local attacker to gain unauthorized access to sensitive data, potentially leading to further exploitation. Organizations using Prisma Browser should assess their security posture and apply relevant safeguards to mitigate the risks associated with this vulnerability. For more information, refer to the vendor's advisory.
Affected Version(s)
Prisma Browser 0 < 148.18.4.217
References
CVSS V4
Score:
0.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Palo Alto Networks thanks Thomas Villanueva for discovering and reporting this issue.