Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsUpdatedStatus
Multiple Vulnerabilities in Nagios XICVE-2026-2042, CVE-2026-2041, CVE-2026-20432026/2/18development
redhat RHSA-2026:2823: RHSA-2026:2823: Updated discovery-cli release RPM versions 2.4.3 (Important)CVE-2026-240492026/2/17development
redhat RHSA-2026:2771: RHSA-2026:2771: edk2 security update (Low)CVE-2025-92302026/2/17development
redhat RHSA-2026:2818: RHSA-2026:2818: pcs security update (Important)CVE-2025-134652026/2/17development
freebsd f9cb72e4-0b52-11f1-8e75-b42e991fc52e: png -- CWE-122: Heap-based Buffer OverflowCVE-2026-256462026/2/17development
redhat RHSA-2026:2782: RHSA-2026:2782: nodejs:22 security update (Important)CVE-2025-55132, CVE-2025-59465, CVE-2026-21637, CVE-2025-55131, CVE-2025-59466, CVE-2025-551302026/2/17testing
redhat RHSA-2026:2776: RHSA-2026:2776: edk2 security update (Moderate)CVE-2025-92302026/2/17testing
Multiple Vulnerabilities in Ruby RackCVE-2026-22860, CVE-2026-255002026/2/17development
redhat RHSA-2026:2781: RHSA-2026:2781: nodejs:24 security update (Important)CVE-2025-55132, CVE-2025-59465, CVE-2026-21637, CVE-2025-55131, CVE-2025-59466, CVE-2025-551302026/2/17testing
redhat RHSA-2026:2817: RHSA-2026:2817: pcs security update (Important)CVE-2025-134652026/2/17testing
redhat RHSA-2026:2819: RHSA-2026:2819: pcs security update (Important)CVE-2025-134652026/2/17testing
postgres postgresql-182-178-1612-1516-and-1421-released-3235: PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 Released!CVE-2026-2005, CVE-2026-2004, CVE-2026-2006, CVE-2026-2007, CVE-2026-20032026/2/17development
redhat RHSA-2026:2799: RHSA-2026:2799: php security update (Moderate)CVE-2025-14177, CVE-2025-141782026/2/17testing
redhat RHSA-2026:2816: RHSA-2026:2816: pcs security update (Important)CVE-2025-134652026/2/17testing
tenable TNS-2026-06: [R1] Stand-alone Security Patches Available for Tenable Security Center versions 6.5.1, 6.6.0 and 6.7.2: SC-202602.1 + SC-202602.2CVE-2025-14819, CVE-2025-15224, CVE-2025-14178, CVE-2025-14177, CVE-2025-15079, CVE-2025-54090, CVE-2025-14017, CVE-2025-14524, CVE-2025-14180, CVE-2025-13034, CVE-2026-26302026/2/17development
SmarterTools SmarterMail before 9526 allows XSS via MAPI requestsCVE-2026-269302026/2/17development
Coverage for CVE-2024-0669CVE-2024-06692026/2/13development
Coverage for CVE-2022-23599CVE-2022-235992026/2/13development
LA-Studio Element Kit for Elementor <= 1.5.6.3 (CVE-2026-0920)CVE-2026-09202026/2/12development
apple 122720: About the security content of tvOS 18.5CVE-2025-43374, CVE-2025-59375, CVE-2024-8176, CVE-2025-31234, CVE-2024-55549, CVE-2025-31257, CVE-2025-24224, CVE-2025-31208, CVE-2025-10911, CVE-2025-31238, CVE-2025-31219, CVE-2025-31212, CVE-2025-24223, CVE-2025-31223, CVE-2025-31233, CVE-2025-49796, CVE-2025-31209, CVE-2025-6021, CVE-2025-31245, CVE-2025-31251, CVE-2025-31242, CVE-2025-31204, CVE-2025-11731, CVE-2025-49794, CVE-2025-31221, CVE-2025-31222, CVE-2025-31217, CVE-2025-31206, CVE-2025-31239, CVE-2025-31226, CVE-2025-31241, CVE-2025-31205, CVE-2025-7425, CVE-2025-31215, CVE-2025-36630, CVE-2025-242132026/2/12development
Microsoft Windows Defender for LinuxCVE-2026-215372026/2/12development
Gogs <= 0.13.3 Multiple VulnerabilitiesCVE-2026-23633, CVE-2025-65852, CVE-2026-23632, CVE-2026-22592, CVE-2025-64111, CVE-2026-24135, CVE-2025-641752026/2/11testing
Security Advisory for Zyxel ProductsCVE-2025-117302026/2/11development
Security Update for QEMUCVE-2026-06652026/2/10development
microsoft_bulletins 2026-Feb_server_software: Microsoft Exchange ServerCVE-2026-215272026/2/10development
Apache Airflow < 3.1.6 Log Output Credential ExposreCVE-2025-686752026/2/9development
Multiple Vulnerabilities in Notepad++ (CVE-2025-56383)CVE-2025-15556, CVE-2025-563832026/2/5development
Sangoma FreePBX Improper Authentication Vulnerability (CVE-2019-19006)CVE-2019-190062026/2/4development
Brocade Fabric OS Multiple Vulnerabilities Feb 2026CVE-2025-58379, CVE-2025-58381, CVE-2026-0383, CVE-2025-58382, CVE-2025-58383, CVE-2025-9711, CVE-2025-583802026/2/3development
cisco cisco-sa-iec6400-Pem5uQ7v: Cisco IEC6400 Wireless Backhaul Edge Compute Software SSH Denial of Service VulnerabilityCVE-2026-200802026/2/3development
Multiple Vulnerabilities in SolarWinds Web Help DeskCVE-2025-40551, CVE-2025-40537, CVE-2025-40552, CVE-2025-405362026/1/30development
Multiple Vulnerabilities in Alteryx ServerCVE-2025-28243, CVE-2025-28245, CVE-2023-269612026/1/30development
Security Update for PyBindCVE-2024-318842026/1/29development
Security Update for WiresharkCVE-2026-09622026/1/22development
cisco cisco-sa-ucce-pcce-xss-2JVyg3uD: Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting VulnerabilitiesCVE-2026-20055, CVE-2026-201092026/1/22development
oracle_linux ELSA-2026-0936: ELSA-2026-0936: glib2 security update (MODERATE)CVE-2025-136012026/1/22development
oracle_linux ELSA-2026-0975: ELSA-2026-0975: glib2 security update (MODERATE)CVE-2025-136012026/1/22development
oracle_linux ELSA-2026-0930: ELSA-2026-0930: pcs security update (MODERATE)CVE-2025-67726, CVE-2025-677252026/1/22development
oracle CPUJan2026: Business Intelligence Enterprise EditionCVE-2025-8885, CVE-2025-26333, CVE-2025-66418, CVE-2024-57699, CVE-2025-48734, CVE-2025-9230, CVE-2025-59419, CVE-2025-41249, CVE-2025-55039, CVE-2026-21976, CVE-2023-6378, CVE-2021-23926, CVE-2025-48924, CVE-2025-68161, CVE-2024-35195, CVE-2025-31672, CVE-2025-52999, CVE-2024-47554, CVE-2025-48976, CVE-2022-45047, CVE-2025-59250, CVE-2025-587542026/1/20development
oracle CPUJan2026: MySQL Server 8.4.8CVE-2025-6965, CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Cluster 8.4.8CVE-2025-6965, CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Cluster 8.0.45CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Server 8.0.45CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Cluster 7.6.37CVE-2026-219362026/1/20development
cisco cisco-sa-sma-attack-N9bf4: Reports About Cyberattacks Against Cisco Secure Email Gateway And Cisco Secure Email and Web ManagerCVE-2025-203932026/1/15development
Windows SDK Inbox COM Objects (Global Memory) Remote Code Execution VulnerabilityCVE-2026-212192026/1/13development
IBM API Connect Auth BypassCVE-2025-139152026/1/8development
oracle_linux ELSA-2025-23295: ELSA-2025-23295: podman security update (MODERATE)CVE-2025-581832025/12/19development
Motex LANSCOPE Endpoint Manager Improper Verification of Source of a Communication Channel Vulnerability (CVE-2025-61932)CVE-2025-619322025/11/18development