A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its AppleScript interface allowing a locally authenticated non-admin user to leverage this exposed Apple Event handler to send unauthorized commands to the browser.
No special configuration is required to be affected by this issue.
Palo Alto Networks is not aware of any malicious exploitation of this issue.