Vulnerabilities > Paloaltonetworks > Prisma Cloud > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-12 CVE-2024-5906 Cross-site Scripting vulnerability in Paloaltonetworks Prisma Cloud
A cross-site scripting (XSS) vulnerability in Palo Alto Networks Prisma Cloud Compute software enables a malicious administrator with add/edit permissions for identity providers to store a JavaScript payload using the web interface on Prisma Cloud Compute.
network
low complexity
paloaltonetworks CWE-79
4.8
2021-06-10 CVE-2021-3039 Information Exposure Through Log Files vulnerability in Paloaltonetworks Prisma Cloud
An information exposure through log file vulnerability exists in the Palo Alto Networks Prisma Cloud Compute Console where a secret used to authorize the role of the authenticated user is logged to a debug log file.
network
low complexity
paloaltonetworks CWE-532
5.5