High severity7.8NVD Advisory· Published Jul 9, 2026· Updated Jul 16, 2026
CVE-2026-0278
CVE-2026-0278
Description
Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls.
The Prisma Access Agent on macOS is not affected.
Affected products
3cpe:2.3:a:paloaltonetworks:prisma_access_agent:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:paloaltonetworks:prisma_access_agent:*:*:*:*:*:*:*:*range: <26.2.1
- (no CPE)
Patches
Vulnerability mechanics
References
1- security.paloaltonetworks.com/CVE-2026-0278nvdVendor Advisory
News mentions
0No linked articles in our index yet.