Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.3

CVE-2025-0139: Palo Alto Networks Autonomous Digital Experience Manager macOS Privilege Escalation Risk

CVE-2025-0139
Summary

A weakness in Palo Alto Networks' software on macOS devices allows a regular user to gain full control over the computer. This could let an attacker do more harm if they already have access to a device. Update the software to fix this issue.

Original title
An incorrect privilege assignment vulnerability in Palo Alto Networks Autonomous Digital Experience Manager allows a locally authenticated low privileged user on macOS endpoints to escalate their p...
Original description
An incorrect privilege assignment vulnerability in Palo Alto Networks Autonomous Digital Experience Manager allows a locally authenticated low privileged user on macOS endpoints to escalate their privileges to root.
nvd CVSS4.0 6.3
Vulnerability type
CWE-266 Incorrect Privilege Assignment
Published: 9 Jul 2025 · Updated: 15 Jun 2026 · First seen: 7 Mar 2026