Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsUpdatedStatus
fedora FEDORA-2026-9d59721e9b: libgit2-1.9.6-1.fc44 rust-libgit2-sys-0.18.7-1.fc44CVE-2026-53583, CVE-2026-53585, CVE-2026-53587, CVE-2026-53584, CVE-2026-535862026/7/27development
fedora FEDORA-2026-bb8dc1e5b6: trafficserver-10.1.3-1.fc44CVE-2026-591732026/7/27development
fedora FEDORA-2026-230ba36543: systemd-259.8-1.fc442026/7/27development
fedora FEDORA-2026-30e8e9a2b2: lego-5.3.1-2.fc44CVE-2026-108462026/7/27development
fedora FEDORA-2026-9921e0e415: libwebsockets-4.5.8-1.fc44CVE-2026-106502026/7/27development
Multiple Vulnerabilities in Oracle Sun Systems Products Suite (Solaris)2026/7/24development
Check Point SmartConsole Improper Authentication Vulnerability (CVE-2026-16232)CVE-2026-162322026/7/24development
Multiple Vulnerabilities in Progress Telerik UI AJAXCVE-2026-13185, CVE-2026-13192, CVE-2026-131862026/7/24development
Multiple Vulnerabilities in Vercel Next.jsCVE-2026-64645, CVE-2026-64649, CVE-2026-64642, CVE-2026-646412026/7/24development
checkpoint sk185169: Authentication Bypass in the SmartConsole Login Process Using an Application TokenCVE-2026-162322026/7/24development
checkpoint sk185153: Local Privilege Escalation in Gaia PortalCVE-2026-621452026/7/24development
checkpoint sk185152: Management Authentication Bypass and Privilege EscalationCVE-2026-621442026/7/24development
[Web App Scanning] Langflow < 1.7.3 Remote Code ExecutionCVE-2026-07702026/7/24development
[Web App Scanning] Hashicorp Consul API Unauthenticated Access2026/7/23testing
oracle CPUJuly2026: Database Server2026/7/23development
oracle CPUJuly2026: Enterprise Manager Base Platform2026/7/23development
atlassian_jira_service_management JSDSERVER-16652: BASM (Broken Authentication & Session Management) SubjectDnX509PrincipalExtractor Dependency in Jira Service Management Data CenterCVE-2026-478382026/7/23development
atlassian_confluence CONFSERVER-104334: DoS (Denial of Service) in Confluence Data CenterCVE-2026-215772026/7/23development
atlassian_confluence CONFSERVER-104340: Information Disclosure in Confluence Data CenterCVE-2026-215792026/7/23development
oracle CPUJuly2026: MySQL ConnectorsCVE-2026-60192, CVE-2026-60623, CVE-2026-60179, CVE-2026-60624, CVE-2026-60586, CVE-2026-60317, CVE-2026-61082, CVE-2026-60180, CVE-2026-601932026/7/23development
oracle CPUJuly2026: Apex2026/7/23development
Multiple Vulnerabilities in SuricataCVE-2026-63446, CVE-2026-63449, CVE-2026-63447, CVE-2026-57225, CVE-2026-57223, CVE-2026-63450, CVE-2026-57224, CVE-2026-63451, CVE-2026-63452, CVE-2026-57222, CVE-2026-57226, CVE-2026-63448, CVE-2026-57228, CVE-2026-57229, CVE-2026-572272026/7/23development
Multiple Vulnerabilities in Elastic KibanaCVE-2026-63145, CVE-2026-56147, CVE-2026-63260, CVE-2026-63259, CVE-2026-63141, CVE-2026-56146, CVE-2026-49092, CVE-2026-63143, CVE-2026-63262, CVE-2026-63261, CVE-2026-42397, CVE-2026-63142, CVE-2026-631392026/7/23development
Multiple Vulnerabilities in Elastic ElasticsearchCVE-2026-56144, CVE-2026-63136, CVE-2026-63140, CVE-2026-56145, CVE-2026-63144, CVE-2026-632632026/7/23development
Security Update for Perl-DBICVE-2026-15043, CVE-2026-153922026/7/23development
Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2026-0770)CVE-2026-07702026/7/22development
AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability (CVE-2024-54085)CVE-2024-540852026/7/22development
Soliton Systems K.K FileZen OS Command Injection Vulnerability (CVE-2026-25108)CVE-2026-251082026/7/22development
D-Link DNR-322L Download of Code Without Integrity Check Vulnerability (CVE-2022-40799)CVE-2022-407992026/7/22development
Qualcomm Multiple Chipsets Memory Corruption Vulnerability (CVE-2026-21385)CVE-2026-213852026/7/22development
Multiple Vulnerabilities in YAML SyckCVE-2026-57077, CVE-2026-57075, CVE-2026-57076, CVE-2026-137132026/7/22development
Multiple Vulnerabilities in KeycloakCVE-2026-14781, CVE-2026-4282, CVE-2026-1609, CVE-2026-46342026/7/22development
Multiple Vulnerabilities in MantisBTCVE-2026-52847, CVE-2026-47142, CVE-2026-52881, CVE-2026-47156, CVE-2026-62944, CVE-2026-492732026/7/22development
nginx nginx-CVE-2026-56434.html: Use-after-free when using ngx_http_ssi_moduleCVE-2026-564342026/7/22development
nginx nginx-CVE-2026-56434.html: Use-after-free when using ngx_http_ssi_moduleCVE-2026-564342026/7/22development
nginx nginx-CVE-2026-60005.html: Memory disclosure when using ngx_http_slice_moduleCVE-2026-600052026/7/22development
nginx nginx-CVE-2026-42533.html: Buffer overflow when using map and regexCVE-2026-425332026/7/22development
Security Update for N8NCVE-2026-592082026/7/22development
Security Update for IBM Db2CVE-2026-97622026/7/22development
tenable TNS-2026-19: [R2] Stand-alone Security Patch Available for Tenable Security Center Versions 6.6.0, 6.7.2 and 6.8.0: SC202607.1CVE-2026-6477, CVE-2026-34032, CVE-2026-7261, CVE-2026-23479, CVE-2026-7259, CVE-2025-15468, CVE-2026-64879, CVE-2026-64877, CVE-2026-33523, CVE-2026-6472, CVE-2025-69420, CVE-2026-42371, CVE-2026-24072, CVE-2026-6474, CVE-2026-7262, CVE-2025-68160, CVE-2026-6104, CVE-2026-6473, CVE-2026-6479, CVE-2025-66199, CVE-2026-7568, CVE-2026-6638, CVE-2025-14179, CVE-2026-6735, CVE-2026-2005, CVE-2026-64880, CVE-2025-15467, CVE-2026-25589, CVE-2026-22795, CVE-2026-7258, CVE-2026-25243, CVE-2026-6637, CVE-2026-2004, CVE-2026-34059, CVE-2026-6722, CVE-2026-23918, CVE-2026-23631, CVE-2025-69418, CVE-2026-25588, CVE-2026-6475, CVE-2026-6478, CVE-2025-11187, CVE-2026-2006, CVE-2026-64881, CVE-2025-15469, CVE-2026-64878, CVE-2025-69419, CVE-2026-7263, CVE-2026-2003, CVE-2025-69421, CVE-2026-33857, CVE-2026-227962026/7/22development
[Web App Scanning] Oracle E-Business Suite SQLNet Log File Disclosure2026/7/21testing
[Web App Scanning] Oracle E-Business Suite Credentials Disclosure2026/7/21testing
wp2shell (CVE-2026-63030, CVE-2026-60137): WordPress Core Pre-Authentication RCE2026/7/20testing
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2026-58644)CVE-2026-586442026/7/17development
iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2026-48939)CVE-2026-489392026/7/16development
Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2026-56291)CVE-2026-562912026/7/16development
PT - microsoft_malware_protection_engine (smb_nt_ms26_jul_microsoft_malware_protection_engine.nasl)CVE-2026-55011, CVE-2026-550122026/7/16development
PT - windows_admin_center (smb_nt_ms26_jul_windows_admin_center.nasl)CVE-2026-58631, CVE-2026-56196, CVE-2026-57107, CVE-2026-56169, CVE-2026-56197, CVE-2026-561852026/7/16development
Dell PowerScale OneFS < 9.10.1.8 / < 9.13.0.3 Multiple Vulnerabilities (DSA-2026-261)CVE-2026-49501, CVE-2026-406332026/7/16development
cisco cisco-sa-hardening-roomos-AqNMbEq: Cisco RoomOS Security Hardening Release: July 2026CVE-2026-20187, CVE-2026-20157, CVE-2026-20156, CVE-2026-20158, CVE-2026-20153, CVE-2026-201502026/7/16development