CVE-2026-0278: Prisma Access Agent: Multiple DLP Policy Bypass Vulnerabilities on Windows (Severity: MEDIUM)
Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls.
The Prisma Access Agent on macOS is not affected.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.2.1 - Upgrade
Upgrade
Prisma Access Agent (Windows) Data Loss Prevention (DLP)to a version that resolves this vulnerability.Fixed in 26.2.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0278?
The severity of CVE-2026-0278 is high with a score of 8.4.
What are the potential impacts of CVE-2026-0278?
CVE-2026-0278 allows a local user to bypass data loss prevention policy enforcement controls in the Prisma Access Agent.
How do I fix CVE-2026-0278?
To fix CVE-2026-0278, update to the latest version of the Palo Alto Networks Prisma Access Agent that addresses the vulnerability.
Who is affected by CVE-2026-0278?
CVE-2026-0278 affects users running the Prisma Access Agent Data Loss Prevention component on Windows.
Is the macOS version affected by CVE-2026-0278?
No, the macOS version of the Prisma Access Agent is not affected by CVE-2026-0278.