Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.3
CVE-2025-0139: Palo Alto Networks Autonomous Digital Experience Manager macOS Privilege Escalation Risk
CVE-2025-0139
Summary
A weakness in Palo Alto Networks' software on macOS devices allows a regular user to gain full control over the computer. This could let an attacker do more harm if they already have access to a device. Update the software to fix this issue.
Original title
An incorrect privilege assignment vulnerability in Palo Alto Networks Autonomous Digital Experience Manager allows a locally authenticated low privileged user on macOS endpoints to escalate their p...
Original description
An incorrect privilege assignment vulnerability in Palo Alto Networks Autonomous Digital Experience Manager allows a locally authenticated low privileged user on macOS endpoints to escalate their privileges to root.
nvd CVSS4.0
6.3
Vulnerability type
CWE-266
Incorrect Privilege Assignment
Published: 9 Jul 2025 · Updated: 15 Jun 2026 · First seen: 7 Mar 2026