CVE-2026-0275

Prisma Browser: Local Privilege Escalation on macOS

Severity
Low 2
CVSS 4.0
Exploited
Not listed
EPSS
0.001
1.6th percentile
Discovered by
Third party
Published by the vendor
Published
Jul 9, 2026
Assigned by palo_alto

Description

A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administrator with access to the macOS local filesystem to perform actions on the device with root privileges. This issue only affects Prisma® Browser on macOS.

Weakness: CWE-269

Affected products

Vendor Product Category Matched by
Palo Alto Networks Prisma Browser SASE / SSE / Secure Web cna-assigner
Vendor-reported affected versions (1)
  • Palo Alto Networks · Prisma Browser

Credit

Palo Alto Networks thanks Kun Peeks (@SwayZGl1tZyyy) for discovering and reporting this issue.

Vendor remediation

VersionSuggested SolutionPrisma BrowserUpgrade to 150.33.2.46 or later.