Skip to content
Palo Alto NetworksCVE-2026-0277

Palo Alto Networks Prisma Access Agent: improper certificate validation

Medium5.7CVE-2026-0277 · Published Jul 9, 2026 · updated Jul 16, 2026

An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS, Linux, Android and ChromeOS are not affected.

Palo Alto Networks advisory

Affected versions

PackageAffectedFixed in
Prisma Access Agent
Product
< 26.2.126.2.1
Details and references
CVSS 4.0
CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-295

More Palo Alto Networks advisories

All Palo Alto Networks
Advisory
Palo Alto Networks Prisma Browser: privilege escalation
Low2.0Jul 9
Palo Alto Networks Cortex XDR Broker VM: privilege escalation
Low1.1Jul 9
Palo Alto Networks Prisma: local user could bypass DLP policy enforcement...
Medium5.8Jul 9
Palo Alto Networks PAN-OS: command injection
Medium6.0Jul 9
Palo Alto Networks Cloud NGFW: denial of service
Medium6.6Jul 9
Palo Alto Networks PAN-OS: information disclosure
Medium4.7Jul 9

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.