{"id":"CVE-2026-0278","title":"Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls.\n\n\n\nThe Prisma Access Agent on macOS is not affected.","summary":"Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls.\n\n\n\nThe Prisma Access Agent on macOS is not affected.","severity":"none","cwe":["CWE-693"],"published":"2026-07-09","updated":"2026-07-11","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-0278","references":[{"url":"https://security.paloaltonetworks.com/CVE-2026-0278","label":"psirt@paloaltonetworks.com"}],"tags":["nvd"],"epss":0.00155,"epssPercentile":0.05021,"ingestedAt":"2026-07-11T20:15:25.693Z","slug":"CVE-2026-0278","body":"## Overview\n\nMultiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls.\n\n\n\nThe Prisma Access Agent on macOS is not affected.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}