Authentication Bypass by Spoofing in Prisma Access Agent on Windows - CVE-2026-0292
Published: August 16, 2026
Vulnerability details
The vulnerability allows a local privileged user to bypass security inspection and inject and intercept arbitrary network traffic.
The vulnerability exists due to authentication bypass by spoofing in the network driver when handling network traffic for inspection. A local privileged user can spoof authentication in the driver to bypass security inspection and inject and intercept arbitrary network traffic.
No special configuration is required to be affected by this issue.