Improper Protection of Alternate Path in Prisma Access Agent for Linux - CVE-2026-0268
Published: June 16, 2026
Vulnerability details
The vulnerability allows a local user to route network traffic outside the VPN tunnel.
The vulnerability exists due to improper protection of alternate path in Prisma Access Agent for Linux when enforcing VPN traffic routing. A local user can bypass VPN enforcement to route network traffic outside the VPN tunnel.
No special configuration is required.