security.paloaltonetworks.com
Palo Alto Networks GlobalProtect and Prisma Access Agent Vulnerabilities Disclosed
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Two local privilege escalation vulnerabilities were disclosed in Palo Alto Networks products. CVE-2026-0299 affects the GlobalProtect app, allowing local users on Windows, macOS, and Linux to escalate privileges to NT AUTHORITY\SYSTEM or root. CVE-2026-0294 affects the Prisma Access Agent app, enabling similar privilege escalation on Windows and macOS. Both vulnerabilities do not impact iOS, Android, or Chrome OS versions. Palo Alto Networks has not reported any known exploitation of these vulnerabilities. Users are advised to upgrade to the latest versions of the affected applications. The CVSS scores for GlobalProtect are 5.9 and 8.5, while Prisma Access Agent has scores of 6.0 and 8.5. No known workarounds exist for either issue.
Key Points: • CVE-2026-0299 in GlobalProtect allows privilege escalation on Windows, macOS, and Linux. • CVE-2026-0294 in Prisma Access Agent enables similar escalation on Windows and macOS. • Palo Alto Networks recommends immediate upgrades to mitigate these vulnerabilities.