AUGUST 24, 2026
Live Feed
Back to database
Case File

CVE-2026-0277

MEDIUM · CVSS 5.9 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-07-09 · Last synced 2026-08-08

CyberRota Analysis

AI-Generated

An improper certificate validation vulnerability in the Prisma Access Agent for iOS allows attackers to execute man-in-the-middle (MitM) attacks, potentially intercepting sensitive VPN traffic. Organizations utilizing the iOS version of the Prisma Access Agent should prioritize patching this vulnerability to safeguard their network communications. Windows, macOS, Linux, Android, and ChromeOS users are not impacted by this issue.

CVE
CVE-2026-0277
Severity
MEDIUM
CVSS
5.9
EPSS
0.11%
Windows Linux Android Chrome

Original NVD Description

An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS, Linux, Android and ChromeOS are not affected.

Related CVEs

Other vulnerabilities affecting the same vendor(s)