Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows
Plan PatchCVSS 8.4CVE-2026-0306Sep 9, 2026
Palo Alto Networks
IT in OT - Palo Alto firewalls are commonly deployed at IT/OT network boundaries
Summary
A vulnerability in the EndPoint Data Loss Prevention (DLP) enforcement of Palo Alto Networks Prisma Access Agent on Windows enables a local user to bypass configured DLP policy enforcement controls and exfiltrate sensitive data. The vulnerability does not affect Prisma Access Agent on macOS, Linux, iOS, Android, or Chrome OS.
What this means
What could happen
A user with local access to a Windows computer running Prisma Access Agent could bypass DLP controls and steal sensitive data that the organization has configured DLP rules to protect, such as credentials, proprietary information, or operational data.
Who's at risk
Organizations that deploy Prisma Access Agent on Windows endpoints for endpoint security and data loss prevention should be concerned. This affects any enterprise using Palo Alto's endpoint protection on Windows for DLP enforcement, including utilities, manufacturing facilities, or offices with sensitive operational data on user workstations.
How it could be exploited
An attacker with local access to a Windows workstation running Prisma Access Agent can exploit this vulnerability to circumvent DLP policy enforcement. By bypassing DLP controls, the attacker can exfiltrate sensitive data that would normally be blocked or monitored by the DLP rules.
Prerequisites
- Local access to a Windows workstation running Prisma Access Agent version below 26.2
- User privileges to interact with the local system
Low complexity to exploitLocal access requiredAffects data protection controlsNo fix available for non-Windows platforms
Exploitability
Unlikely to be exploited — EPSS score 0.1%
Affected products (6)
1 with fix5 pending
ProductAffected VersionsFix Status
Prisma Access AgentBelow 26.2 on Windows26.2 on Windows+
Prisma Access AgentNone on LinuxNo fix yet
Prisma Access AgentNone on macOSNo fix yet
Prisma Access AgentNone on iOSNo fix yet
Prisma Access AgentNone on AndroidNo fix yet
Prisma Access AgentNone on ChromeOSNo fix yet
Remediation & Mitigation
0/3
Schedule — requires maintenance window
0/3Patching may require device reboot — plan for process interruption
Prisma Access Agent
HOTFIXUpdate Prisma Access Agent on all Windows endpoints to version 26.2 or later
All products
HARDENINGImplement endpoint monitoring and logging to detect unauthorized data exfiltration attempts from DLP-protected systems
HARDENINGAudit DLP policy configurations to ensure all sensitive data categories are properly classified and protected
CVEs (1)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/999ef0dd-dbb4-42fe-b1a9-12b257e3713dGet OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.