CVE-2026-0290
Prisma Browser: Sensitive Information Disclosure Vulnerability
Severity
Low 0.5
CVSS 4.0
Exploited
Not listed
EPSS
0.001
4.0th percentile
Discovered by
Third party
Vendor-published field
Published
Aug 13, 2026
Assigned by palo_alto
Description
An information disclosure vulnerability in the Account Protection feature of Palo Alto Networks Prisma® Browser enables a local attacker to view sensitive data.
Weakness: CWE-522
Affected products
| Vendor | Product | Category | Matched by |
|---|---|---|---|
| Palo Alto Networks | Prisma Browser | SASE / SSE / Secure Web | cna-assigner |
Vendor-reported products (1)
- Palo Alto Networks · Prisma Browser
Credit
Palo Alto Networks thanks Thomas Villanueva for discovering and reporting this issue.
Vendor remediation
VERSION SUGGESTED SOLUTION Prisma Browser Upgrade to 148.18.4.217 or later.