Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Tenable — Vulnerabilities & Security Advisories 80

Browse all 80 CVE security advisories affecting Tenable. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenable operates primarily as a cybersecurity platform specializing in continuous vulnerability management and exposure assessment for enterprise environments. Its core utility lies in scanning networks and cloud infrastructure to identify misconfigurations and unpatched software, enabling organizations to prioritize remediation efforts effectively. Historically, vulnerabilities within the Tenable ecosystem have predominantly involved remote code execution (RCE) and cross-site scripting (XSS), often stemming from web interface components or API endpoints. These flaws typically allowed attackers to bypass authentication or execute arbitrary commands on affected systems. While the company has maintained a generally robust security posture, past incidents have highlighted risks associated with third-party dependencies and configuration errors in its cloud-based services. The current record of 73 CVEs reflects an ongoing effort to address legacy code issues and secure expanding product suites. Users are advised to maintain strict access controls and apply patches promptly to mitigate potential exploitation vectors.

CVE ID Title CVSS Severity Published
CVE-2026-15265 Tenable Agent Path Traversal Leading to Remote Code Execution — tenable_agent CWE-22 9.1 Critical 2026-07-14
CVE-2026-57588 SQL Injection in Nessus via Malicious Scan Result File Import — Nessus CWE-89 3.3 Low 2026-06-25
CVE-2026-57587 SQL Injection in Nessus via Reverse DNS Lookup — Nessus CWE-89 5.3 Medium 2026-06-25
CVE-2026-13007 Insecure Public Caching on REST API Endpoints in Tenable Identity Exposure — Tenable Identity Exposure CWE-306 7.5 High 2026-06-23
CVE-2026-47358 terrascan 安全漏洞 — Terrascan CWE-918 7.5 High 2026-05-19
CVE-2026-47357 terrascan 安全漏洞 — Terrascan CWE-918 7.5 High 2026-05-19
CVE-2026-47356 terrascan 代码问题漏洞 — Terrascan CWE-918 7.5 High 2026-05-19
CVE-2026-2698 Improper Access Control — Security Center CWE-639 6.5 Medium 2026-02-23
CVE-2026-2697 Indirect Object Reference (IDOR) in Security Center — Security Center CWE-639 6.3 Medium 2026-02-23
CVE-2026-2630 [R1] Stand-alone Security Patches Available for Tenable Security Center versions 6.5.1, 6.6.0 and 6.7.2: SC-202602.1 + SC-202602.2 — Security Center CWE-78 8.8 High 2026-02-17
CVE-2026-2026 Improper Access Control Allows Denial of Service — Agent CWE-276 6.1 Medium 2026-02-13
CVE-2025-36640 Local Privilege Escalation — Nessus Agent CWE-269 8.8 High 2026-01-13
CVE-2025-36636 Improper Access Control — Security Center 4.3 Medium 2025-10-08
CVE-2025-36630 Local Privilege Escalation — Nessus CWE-269 8.4 High 2025-07-01
CVE-2025-36632 Local Privilege Escalation — Agent CWE-276 7.8 High 2025-06-16
CVE-2025-36631 Local Privilege Escalation — Agent CWE-269 8.4 High 2025-06-13
CVE-2025-36633 Local Privilege Escalation — Agent CWE-269 8.8 High 2025-06-13
CVE-2025-24917 Improper Access Control leads to Local Privilege Escalation — Network Monitor CWE-284 7.8 High 2025-05-23
CVE-2025-24916 Improper Access Control leads to Local Priviledge Escalation — Network Monitor CWE-284 7.0 High 2025-05-23
CVE-2025-36625 Log Poisoning in Nessus — Nessus CWE-117 4.3 Medium 2025-04-18
CVE-2025-24914 Local Priviledge Escalation — Nessus CWE-276 7.8 High 2025-04-18
CVE-2025-24915 Tenable Nessus Agent 安全漏洞 — Nessus Agent CWE-276 7.8 High 2025-03-21
CVE-2025-0760 Stored Credential Disclosure Vulnerability — Tenable Identity Exposure CWE-522 2.7 Low 2025-02-25
CVE-2025-1091 Broken Authorization Schema — Tenable Identity Exposure CWE-862 4.3 Medium 2025-02-25
CVE-2024-12174 Tenable Security Center 安全漏洞 — Security Center CWE-295 2.7 Low 2024-12-09
CVE-2024-9158 XSS — Nessus Network Monitor CWE-79 8.4 High 2024-09-30
CVE-2024-3232 Formula Injection Vulnerability — Tenable Identity Exposure CWE-1236 7.6 High 2024-07-16
CVE-2024-5759 Improper privilege management — Security Center CWE-269 5.4 Medium 2024-06-12
CVE-2024-1891 Stored Cross Site Scripting — Security Center CWE-79 3.5 Low 2024-06-12
CVE-2024-3292 Race Condition — Nessus Agent CWE-367 8.2 High 2024-05-17

This page lists every published CVE security advisory associated with Tenable. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.