Governance, risk and compliance

Tenable advisories: every record the registers tie to its products

In one line

56 advisories are attributed to Tenable products in this record, covering October 2022 to July 2026, and none of them appears in the CISA catalogue of known exploited vulnerabilities. A further 0 register entries mention Tenable without naming one of its products as affected, and are excluded rather than counted. Each entry below links to the register that published it.

Attributed

56

tied to a named product

Known exploited

0

in the CISA catalogue

Rated critical

3

by the register

Last checked

Jul 18, 2026

sources re-queried

Why this list is shorter than a CVE mirror

The registers are searched by keyword, so a search for a company name returns advisories that merely mention it. A mirror publishes those. This page does not: an entry appears only when the register itself ties it to a product of Tenable, through a reference on the vendor's own domain, the vendor named as the assigning authority, or the affected product list naming it.

0 entries did not clear that bar and are not shown. That is the difference, and it is deliberate: a page that lists another company's vulnerability under this heading is wrong in the way that matters most.

56 of the 56 records carry a CVSS base score from the register. Where none is published, none is shown, and no score is estimated.

The full list, most recently exploited and most recent first

Records held by several registers are folded into one entry with a link to each, so the same vulnerability is not counted twice. Entries listed in the CISA catalogue of known exploited vulnerabilities are shown first, because that is the one flag on this page that changes what a reader should do next.

  • WID-SEC-2026-2351highCVSS 9.1Jul 15, 2026

    Affected products: Tenable Security Nessus

  • CVE-2026-15265criticalCVSS 9.3Jul 14, 2026

    A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitrary files outside the intended plugin directory, potentially leading…

  • WID-SEC-2026-2086mediumCVSS 5.3Jun 26, 2026

    Affected products: Tenable Security Nessus

  • CVE-2026-57587lowCVSS 2.1Jun 25, 2026

    A SQL injection vulnerability in Nessus allows a remote, unauthenticated attacker who controls reverse DNS records for a scanned host to inject malicious SQL into the scan results database…

  • CVE-2026-57588lowCVSS 1.6Jun 25, 2026

    A SQL injection vulnerability in Nessus allows an attacker to craft a malicious scan result file that, when imported by a privileged user, injects malicious SQL into the scan results…

  • CVE-2026-13007highCVSS 8.5Jun 23, 2026

    Tenable Identity Exposure contains multiple unauthenticated API endpoints under /w/api/* that expose sensitive application configuration data including cleartext LDAP credentials, SAML…

  • CVE-2026-47358criticalCVSS 9.3May 19, 2026

    Terrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via external URL resolution in uploaded IaC templates when running in server mode.

  • CVE-2026-47357criticalCVSS 9.3May 19, 2026

    Terrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via the remote_url parameter in the remote directory scan endpoint (POST…

  • CVE-2026-47356highCVSS 8.7May 19, 2026

    Terrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via the webhook_url parameter in the file scan endpoint (POST…

  • WID-SEC-2026-1255highCVSS 8.2Apr 24, 2026

    Affected products: Tenable Security Nessus

  • CVE-2026-33694highCVSS 7.4Apr 23, 2026

    This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges.

  • CVE-2026-4433lowCVSS 1.9Mar 24, 2026

    An SSH misconfigurations exists in Tenable OT that led to the potential exfiltration of socket, port, and service information via the ostunnel user and GatewayPorts.

  • WID-SEC-2026-0582mediumCVSS 7.7Mar 04, 2026

    Affected products: Tenable Security Nessus

  • CVE-2026-2698mediumCVSS 5.7Feb 23, 2026

    An improper access control vulnerability exists where an authenticated user could access areas outside of their authorized scope.

  • CVE-2026-2697lowCVSS 2.1Feb 23, 2026

    An Indirect Object Reference (IDOR) in Security Center allows an authenticated remote attacker to escalate privileges via the 'owner' parameter.

  • CVE-2026-2630highCVSS 7.4Feb 17, 2026

    A Command Injection vulnerability exists where an authenticated, remote attacker could execute arbitrary code on the underlying server where Tenable Security Center is hosted.

  • CVE-2026-2026mediumCVSS 5.4Feb 13, 2026

    A vulnerability has been identified where weak file permissions in the Nessus Agent directory on Windows hosts could allow unauthorized access, potentially permitting Denial of Service…

  • WID-SEC-2026-0414mediumCVSS 6.1Feb 13, 2026

    Affected products: Tenable Security Nessus

  • WID-SEC-2026-0038highCVSS 8.8Jan 14, 2026

    Affected products: Tenable Security Nessus

  • CVE-2025-36640highCVSS 7.3Jan 13, 2026

    A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray App on Windows Hosts which could lead to escalation of privileges.

  • CVE-2025-36636mediumCVSS 4.3Oct 08, 2025

    In Tenable Security Center versions prior to 6.7.0, an improper access control vulnerability exists where an authenticated user could access areas outside of their authorized scope.

  • CVE-2025-36630highCVSS 8.4Jul 01, 2025

    In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.

  • WID-SEC-2025-1432highCVSS 8.4Jul 01, 2025

    Affected products: Tenable Security Nessus

  • CVE-2025-36632highCVSS 7.8Jun 16, 2025

    In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could execute code with SYSTEM privilege.

  • CVE-2025-36631highCVSS 8.4Jun 13, 2025

    In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.

  • CVE-2025-36633highCVSS 8.8Jun 13, 2025

    In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could arbitrarily delete local system files with SYSTEM privilege, potentially…

  • WID-SEC-2025-1320highCVSS 8.8Jun 13, 2025

    Affected products: Tenable Security Nessus

  • CVE-2025-24917highCVSS 7.8May 23, 2025

    In Tenable Network Monitor versions prior to 6.5.1 on a Windows host, it was found that a non-administrative user could stage files in a local directory to run arbitrary code with SYSTEM…

  • CVE-2025-24916highCVSS 7.0May 23, 2025

    When installing Tenable Network Monitor to a non-default location on a Windows host, Tenable Network Monitor versions prior to 6.5.1 did not enforce secure permissions for sub-directories.

  • WID-SEC-2025-1136mediumCVSS 7.8May 23, 2025

    Affected products: Tenable Security Nessus Network Monitor

  • WID-SEC-2025-0859mediumCVSS 7.8Apr 22, 2025

    Affected products: Tenable Security Nessus

  • CVE-2025-36625mediumCVSS 4.3Apr 18, 2025

    In Nessus versions prior to 10.8.4, a non-authenticated attacker could alter Nessus logging entries by manipulating http requests to the application.

  • CVE-2025-24914highCVSS 7.8Apr 18, 2025

    When installing Nessus to a non-default location on a Windows host, Nessus versions prior to 10.8.4 did not enforce secure permissions for sub-directories.

  • WID-SEC-2025-0610mediumCVSS 7.0Apr 03, 2025

    Affected products: Tenable Security Nessus

  • CVE-2025-24915highCVSS 7.8Mar 21, 2025

    When installing Nessus Agent to a non-default location on a Windows host, Nessus Agent versions prior to 10.8.3 did not enforce secure permissions for sub-directories.

  • WID-SEC-2024-0650mediumCVSS 7.8Nov 25, 2024

    Affected products: Tenable Security Nessus

  • WID-SEC-2024-2217mediumCVSS 4.8Sep 25, 2024

    Affected products: Tenable Security Nessus Network Monitor

  • WID-SEC-2024-0992mediumCVSS 6.5May 23, 2024

    Affected products: Red Hat Enterprise Linux, Oracle Linux, Tenable Security Nessus Network Monitor

  • WID-SEC-2024-1178highCVSS 8.2May 17, 2024

    Affected products: Tenable Security Nessus

  • WID-SEC-2024-1177highCVSS 8.2May 17, 2024

    Affected products: Tenable Security Nessus

  • CVE-2024-1367highCVSS 7.2Feb 14, 2024

    A command injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Logging parameters, which…

  • WID-SEC-2024-0305mediumCVSS 6.5Feb 07, 2024

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-3032highCVSS 9.8Dec 05, 2023

    Affected products: Tenable Security Nessus Network Monitor

  • WID-SEC-2023-2957mediumCVSS 6.8Nov 17, 2023

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-2798mediumCVSS 6.7Nov 01, 2023

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-1614highCVSS 9.8Oct 26, 2023

    Affected products: Tenable Security Nessus Network Monitor

  • WID-SEC-2023-2745highCVSS 8.8Oct 26, 2023

    Affected products: Tenable Security Nessus Network Monitor

  • WID-SEC-2023-2204mediumCVSS 6.8Sep 22, 2023

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-1569mediumCVSS 6.3Jun 27, 2023

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-0629highCVSS 9.1Mar 14, 2023

    Affected products: Tenable Security Nessus

  • WID-SEC-2023-0229highCVSS 8.2Jan 31, 2023

    Affected products: Tenable Security Nessus

  • CVE-2023-0476mediumCVSS 6.5Jan 25, 2023

    A LDAP injection vulnerability exists in Tenable.sc due to improper validation of user-supplied input before returning it to users.

  • CVE-2023-24493mediumCVSS 5.7Jan 25, 2023

    A formula injection vulnerability exists in Tenable.sc due to improper validation of user-supplied input before returning it to users.

  • WID-SEC-2023-0147highCVSS 9.1Jan 19, 2023

    Affected products: Tenable Security Nessus

  • CVE-2022-3499mediumCVSS 6.5Oct 31, 2022

    An authenticated attacker could utilize the identical agent and cluster node linking keys to potentially allow for a scenario where unauthorized disclosure of agent logs and data is present.

  • CVE-2022-33757mediumCVSS 6.5Oct 24, 2022

    An authenticated attacker could read Nessus Debug Log file attachments from the web UI without having the correct privileges to do so.

Which registers contributed

RegisterOperated byEntriesLatest
European Vulnerability DatabaseENISA, European Union29Jul 14, 2026
CERT-Bund security advisoriesBSI, Federal Republic of Germany27Jul 15, 2026

The entry counts here are the raw register totals for Tenable, before attribution. They are larger than the list above for exactly that reason.

Questions this page answers

How many vulnerabilities does Tenable have?

56 advisories in this record are tied by a register to a product of Tenable. That is not the same as the number of vulnerabilities the products contain, and no public source knows that number. It is the count of what has been found, disclosed and published, which depends on how much the products are examined and how openly the vendor discloses.

Are any Tenable vulnerabilities being actively exploited?

None of the 56 records here appears in the CISA catalogue of known exploited vulnerabilities. That catalogue is not exhaustive: it lists what CISA has confirmed as exploited, so absence from it is not proof that nothing has been exploited.

Why does this page show fewer CVEs for Tenable than other sites?

Because a keyword search for a company name returns advisories about other companies' products that mention it in passing, and this page excludes those. 0 register entries name Tenable without naming one of its products as affected. A mirror that lists them produces a longer page and a wrong number.

Where do the Tenable advisories on this page come from?

From European Vulnerability Database (ENISA, European Union); CERT-Bund security advisories (BSI, Federal Republic of Germany). Every entry links back to the register that published it, and carries the date that register states. Where the same vulnerability is held by several registers it is shown once with a link to each, rather than counted twice.

Does a long advisory list mean Tenable is insecure?

No. A register records what researchers found and what the vendor disclosed, so a widely deployed product with a working disclosure process accumulates more entries than one nobody examines. A short list can equally mean a small install base or a vendor that publishes little. This page reports the record and does not rate the vendor, because whether this is acceptable depends on your risk appetite, your compliance scope and the alternatives you are weighing.

A list of advisories is not a risk assessment

What matters is which of these touch the components you actually run, in the configuration you actually run them in, and whether that is acceptable next to the alternatives on your shortlist. DecisionOS reads the same pool against the criteria of a real decision and produces a memo that holds up in front of a board and an auditor.

The full Tenable record, including sources and open questions

Tenable vulnerabilities: all 56 advisories on record, with sources | DecisionOS by nexalign