CVE-2026-0248: Prisma Access Agent: Improper Certificate Validation Vulnerability (Severity: MEDIUM)
An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a certificate for any domain issued by a trusted Certificate Authority, the attacker can capture sensitive device information.
The Prisma Access Agent on macOS, Windows, Linux and iOS are not affected.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.2.1 - Upgrade
Upgrade
Prisma Access Agent Chrome OSto a version that resolves this vulnerability.Fixed in 26.2.1 - Upgrade
Upgrade
Prisma Access Agent on Androidto a version that resolves this vulnerability.Fixed in 26.2.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0248?
CVE-2026-0248 has a severity rating of MEDIUM.
How does CVE-2026-0248 affect the Prisma Access Agent?
CVE-2026-0248 allows attackers to perform a man-in-the-middle attack to intercept VPN traffic by exploiting improper certificate validation.
What products are affected by CVE-2026-0248?
CVE-2026-0248 affects the Prisma Access Agent for Android and Chrome OS.
How can I mitigate the risks of CVE-2026-0248?
To mitigate CVE-2026-0248, ensure your Prisma Access Agent is updated to the latest version 26.2.1 or higher.
Is the Prisma Access Agent for other platforms affected by CVE-2026-0248?
No, CVE-2026-0248 specifically affects the Prisma Access Agent for Android and Chrome OS only.