Back

MEDIUM

Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows

Published Sep 10, 2026

Description

A vulnerability in the EndPoint Data Loss Prevention (DLP) enforcement of Palo Alto Networks Prisma® Access Agent enables a local user to bypass configured DLP policy enforcement controls and exfiltrate sensitive data.

This Prisma Access Agent on macOS, Linux, iOS, Android and Chrome OS is not affected.

Affected products

Remediation

Vendor solution

VersionMinor VersionSuggested SolutionPrisma Access Agent on Windows24.0 through 26.2 Upgrade to 26.2 or later.Prisma Access Agent on Linux No action needed.Prisma Access Agent on macOS  No action needed.Prisma Access Agent on iOS  No action needed. Prisma Access Agent on Android  No action needed. Prisma Access Agent on ChromeOS  No action needed.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner palo_alto
Published Sep 10, 2026
Updated Sep 10, 2026
Reserved Nov 3, 2025
CISA Vulnrichment
Updated Sep 10, 2026
NVD
Status Awaiting Analysis
Modified Sep 10, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner palo_alto
Published Sep 10, 2026
Updated Sep 10, 2026
Exploited since n/a
EUVD-2026-75258