{"id":"CVE-2026-0291","title":"An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma A…","summary":"An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma A…","severity":"medium","cvss":4.4,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L","cwe":["CWE-59"],"vendor":"paloaltonetworks","product":"prisma_access_agent","affected":["prisma_access_agent < 26.2.2"],"patched":["prisma_access_agent 26.2.2"],"published":"2026-08-13","updated":"2026-09-09","sourceUpdated":"2026-09-09T16:33:11.627","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-0291","references":[{"url":"https://security.paloaltonetworks.com/CVE-2026-0291","label":"psirt@paloaltonetworks.com"}],"tags":["nvd"],"epss":0.00111,"epssPercentile":0.01503,"ingestedAt":"2026-09-09T17:16:03.062Z","slug":"CVE-2026-0291","body":"## Overview\n\nAn improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope and disable Prisma Access Agent.\n\nThe Prisma Access Agent on macOS, Windows, iOS, Android, and Chrome OS is not affected.\n\n## Affected\n\n- `prisma_access_agent < 26.2.2`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `prisma_access_agent 26.2.2`","depth":"sunlit","depthScore":24,"depthScoreParts":{"impact":24.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}