An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma Access Agent.
The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected.
The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No known workarounds or mitigations exist for this issue.
References
| Link | Providers |
|---|---|
| https://security.paloaltonetworks.com/CVE-2026-0291 |
|
History
Thu, 13 Aug 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma Access Agent. The Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected. | |
| Title | Prisma Access Agent: Authenticated Limited File Deletion on Linux | |
| First Time appeared |
Palo Alto Networks
Palo Alto Networks prisma Access Agent |
|
| Weaknesses | CWE-59 | |
| CPEs | cpe:2.3:a:palo_alto_networks:prisma_access_agent:*:*:*:*:*:Linux:*:* | |
| Vendors & Products |
Palo Alto Networks
Palo Alto Networks prisma Access Agent |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2026-08-13T01:47:59.370Z
Reserved: 2025-11-03T20:44:48.974Z
Link: CVE-2026-0291
No data.
Status : Received
Published: 2026-08-13T03:16:43.800
Modified: 2026-08-13T03:16:43.800
Link: CVE-2026-0291
No data.
OpenCVE Enrichment
Updated: 2026-08-13T03:30:04Z
Weaknesses