Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tenable — Vulnerabilities & Security Advisories 73

Browse all 73 CVE security advisories affecting Tenable. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenable operates primarily as a cybersecurity platform specializing in continuous vulnerability management and exposure assessment for enterprise environments. Its core utility lies in scanning networks and cloud infrastructure to identify misconfigurations and unpatched software, enabling organizations to prioritize remediation efforts effectively. Historically, vulnerabilities within the Tenable ecosystem have predominantly involved remote code execution (RCE) and cross-site scripting (XSS), often stemming from web interface components or API endpoints. These flaws typically allowed attackers to bypass authentication or execute arbitrary commands on affected systems. While the company has maintained a generally robust security posture, past incidents have highlighted risks associated with third-party dependencies and configuration errors in its cloud-based services. The current record of 73 CVEs reflects an ongoing effort to address legacy code issues and secure expanding product suites. Users are advised to maintain strict access controls and apply patches promptly to mitigate potential exploitation vectors.

CVE IDTitleCVSSSeverityPublished
CVE-2026-2698 Improper Access Control — Security CenterCWE-639 6.5 Medium2026-02-23
CVE-2026-2697 Indirect Object Reference (IDOR) in Security Center — Security CenterCWE-639 6.3 Medium2026-02-23
CVE-2026-2630 [R1] Stand-alone Security Patches Available for Tenable Security Center versions 6.5.1, 6.6.0 and 6.7.2: SC-202602.1 + SC-202602.2 — Security CenterCWE-78 8.8 High2026-02-17
CVE-2026-2026 Improper Access Control Allows Denial of Service — AgentCWE-276 6.1 Medium2026-02-13
CVE-2025-36640 Local Privilege Escalation — Nessus AgentCWE-269 8.8 High2026-01-13
CVE-2025-36636 Improper Access Control — Security Center 4.3 Medium2025-10-08
CVE-2025-36630 Local Privilege Escalation — NessusCWE-269 8.4 High2025-07-01
CVE-2025-36632 Local Privilege Escalation — AgentCWE-276 7.8 High2025-06-16
CVE-2025-36631 Local Privilege Escalation — AgentCWE-269 8.4 High2025-06-13
CVE-2025-36633 Local Privilege Escalation — AgentCWE-269 8.8 High2025-06-13
CVE-2025-24917 Improper Access Control leads to Local Privilege Escalation — Network MonitorCWE-284 7.8 High2025-05-23
CVE-2025-24916 Improper Access Control leads to Local Priviledge Escalation — Network MonitorCWE-284 7.0 High2025-05-23
CVE-2025-36625 Log Poisoning in Nessus — NessusCWE-117 4.3 Medium2025-04-18
CVE-2025-24914 Local Priviledge Escalation — NessusCWE-276 7.8 High2025-04-18
CVE-2025-24915 Tenable Nessus Agent 安全漏洞 — Nessus AgentCWE-276 7.8 High2025-03-21
CVE-2025-0760 Stored Credential Disclosure Vulnerability — Tenable Identity ExposureCWE-522 2.7 Low2025-02-25
CVE-2025-1091 Broken Authorization Schema — Tenable Identity ExposureCWE-862 4.3 Medium2025-02-25
CVE-2024-12174 Tenable Security Center 安全漏洞 — Security CenterCWE-295 2.7 Low2024-12-09
CVE-2024-9158 XSS — Nessus Network MonitorCWE-79 8.4 High2024-09-30
CVE-2024-3232 Formula Injection Vulnerability — Tenable Identity ExposureCWE-1236 7.6 High2024-07-16
CVE-2024-5759 Improper privilege management — Security CenterCWE-269 5.4 Medium2024-06-12
CVE-2024-1891 Stored Cross Site Scripting — Security CenterCWE-79 3.5 Low2024-06-12
CVE-2024-3292 Race Condition — Nessus AgentCWE-367 8.2 High2024-05-17
CVE-2024-3291 Privilege Escalation — Nessus AgentCWE-281 7.8 High2024-05-17
CVE-2024-3290 Race Condition — NessusCWE-367 8.2 High2024-05-17
CVE-2024-3289 Tenable Network Security Nessus 安全漏洞 — NessusCWE-281 7.8 High2024-05-17
CVE-2024-2390 Local Privilege Escalation — Nessus AgentCWE-269 7.8 High2024-03-18
CVE-2024-1683 DLL Injection in Tenable Identity Exposure Secure Relay — Tenable Identity Exposure Secure RelayCWE-78 7.3 High2024-02-23
CVE-2024-1471 HTML Injection Vulnerability — Security CenterCWE-20 5.9 Medium2024-02-14
CVE-2024-1367 Command Injection Vulnerability in Tenable Security Center — Security CenterCWE-78 7.2 High2024-02-14

This page lists every published CVE security advisory associated with Tenable. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.