A sensitive information disclosure vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user to retrieve sensitive data from Prisma Browser.

Browser self-protection should be enabled to mitigate this issue.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 14 Nov 2025 18:00:00 +0000

Type Values Removed Values Added
Description A sensitive information disclosure vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user to retrieve sensitive data from Prisma Browser. Browser self-protection should be enabled to mitigate this issue.
Title Prisma Browser: Sensitive Information Disclosure Vulnerability in Prisma Browser
Weaknesses CWE-316
References
Metrics cvssV4_0

{'score': 4.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2025-11-14T17:53:38.487Z

Reserved: 2025-05-12T22:05:16.328Z

Link: CVE-2025-4618

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-11-14T18:15:47.727

Modified: 2025-11-14T18:15:47.727

Link: CVE-2025-4618

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.