Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsUpdatedStatus
debian_linux dla-4520: Debian dla-4520 : python-tornado-doc - security updateCVE-2026-319584/1/2026testing
redhat RHSA-2026:5866: RHSA-2026:5866: OpenShift Container Platform 4.17.52 packages and security update (Important)CVE-2025-68121, CVE-2025-58183, CVE-2025-617294/1/2026testing
redhat RHSA-2026:6342: RHSA-2026:6342: thunderbird security update (Important)CVE-2026-4702, CVE-2026-4705, CVE-2026-4716, CVE-2026-4688, CVE-2026-4713, CVE-2026-4706, CVE-2026-4687, CVE-2026-4708, CVE-2026-4696, CVE-2026-4694, CVE-2026-4371, CVE-2026-4720, CVE-2026-4715, CVE-2026-4684, CVE-2026-4700, CVE-2026-4691, CVE-2026-4707, CVE-2026-4717, CVE-2026-4704, CVE-2026-4686, CVE-2026-4712, CVE-2026-4710, CVE-2026-4709, CVE-2026-4697, CVE-2026-3889, CVE-2026-4689, CVE-2026-4718, CVE-2026-4699, CVE-2026-4701, CVE-2026-4693, CVE-2026-4719, CVE-2026-4721, CVE-2026-4711, CVE-2026-4695, CVE-2026-4685, CVE-2026-4714, CVE-2026-4690, CVE-2026-4692, CVE-2026-46984/1/2026testing
oracle_linux ELSA-2026-6259: ELSA-2026-6259: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free security update (IMPORTANT)CVE-2026-3085, CVE-2026-2921, CVE-2026-3083, CVE-2026-2923, CVE-2026-3082, CVE-2026-2922, CVE-2026-29204/1/2026development
fedora FEDORA-2026-e1669a5881: libpng12-1.2.57-25.fc45CVE-2026-256464/1/2026development
fedora FEDORA-2026-dfa60d30bc: libpng15-1.5.30-25.fc45CVE-2026-256464/1/2026development
alma_linux ALSA-2026:6281: ALSA-2026:6281: python3.11 security update (High)CVE-2026-45194/1/2026testing
alma_linux ALSA-2026:6283: ALSA-2026:6283: python3.12 security update (High)CVE-2026-45194/1/2026testing
Fortinet FortiClientEMS < 7.4.5 SQL Injection (CVE-2026-21643)CVE-2026-216434/1/2026development
miracle_linux AXSA:2026-374:03: AXSA:2026-374:03: grub2-2.06-114.el9_7.1.ML.1CVE-2025-616624/1/2026development
miracle_linux AXSA:2026-373:06: AXSA:2026-373:06: firefox-140.9.0-1.el8_10.ML.1CVE-2026-4702, CVE-2026-4705, CVE-2026-4716, CVE-2026-4688, CVE-2026-4713, CVE-2026-4706, CVE-2026-4687, CVE-2026-4708, CVE-2026-4696, CVE-2026-4694, CVE-2026-4720, CVE-2026-4715, CVE-2026-4684, CVE-2026-4700, CVE-2026-4691, CVE-2026-4707, CVE-2026-4717, CVE-2026-4704, CVE-2026-4686, CVE-2026-4712, CVE-2026-4710, CVE-2026-4709, CVE-2026-4697, CVE-2026-4689, CVE-2026-4718, CVE-2026-4699, CVE-2026-4701, CVE-2026-4693, CVE-2026-4719, CVE-2026-4721, CVE-2026-4711, CVE-2026-4695, CVE-2026-4685, CVE-2026-4714, CVE-2026-4690, CVE-2026-4692, CVE-2026-46984/1/2026development
miracle_linux AXSA:2026-376:01: AXSA:2026-376:01: [security - medium] mysql:8.0 security update, rapidjson-1.1.0-6.module+el8+1967+1fd4a047CVE-2026-21964, CVE-2026-21941, CVE-2026-21937, CVE-2026-21948, CVE-2026-21968, CVE-2026-219364/1/2026development
microsoft_mariner CVE-2026-33343: CVE-2026-33343CVE-2026-333434/1/2026testing
microsoft_mariner CVE-2026-33413: CVE-2026-33413CVE-2026-334134/1/2026testing
Multiple Vulnerabilities in Zabbix4/1/2026development
Multiple Vulnerabilities in Suricata4/1/2026development
Security Update for Docker Desktop4/1/2026development
Multiple Vulnerabilities in ImageMagick4/1/2026development
debian_linux dla-4519: Debian dla-4519 : libnetty-java - security updateCVE-2025-55163, CVE-2025-58056, CVE-2024-29025, CVE-2025-58057, CVE-2025-59419, CVE-2025-677354/1/2026development
debian_linux dsa-6188: Debian dsa-6188 : golang-github-canonical-lxd-dev - security updateCVE-2026-28384, CVE-2026-33897, CVE-2026-335424/1/2026development
debian_linux dsa-6189: Debian dsa-6189 : libpng-dev - security updateCVE-2026-33416, CVE-2026-336364/1/2026development
nginx nginx-CVE-2026-28755.html: OCSP result bypass in streamCVE-2026-287553/31/2026development
nginx nginx-CVE-2026-27784.html: Buffer overflow in the ngx_http_mp4_moduleCVE-2026-277843/31/2026development
nginx nginx-CVE-2026-28753.html: Injection in auth_http and XCLIENTCVE-2026-287533/31/2026development
nginx nginx-CVE-2026-32647.html: Buffer overflow in the ngx_http_mp4_moduleCVE-2026-326473/31/2026development
nginx nginx-CVE-2026-27654.html: Buffer overflow in ngx_http_dav_moduleCVE-2026-276543/31/2026development
nginx nginx-CVE-2026-1642.html: SSL upstream injectionCVE-2026-16423/31/2026development
nginx nginx-CVE-2026-27651.html: NULL pointer dereference while using CRAM-MD5 or APOPCVE-2026-276513/31/2026development
cisco cisco-sa-asa-ftd-ios-dos-kPEpQGGK: Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, and Secure Firewall Threat Defense Software IKEv2 Denial of Service VulnerabilityCVE-2026-200123/31/2026development
cisco cisco-sa-asa-ftd-ios-dos-kPEpQGGK: Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, and Secure Firewall Threat Defense Software IKEv2 Denial of Service VulnerabilityCVE-2026-200123/31/2026development
PaperCut NG/MF Security Bulletin (March 2026)CVE-2026-5115, CVE-2026-47943/31/2026development
LangChain Core < 1.2.22 Path Traversal (CVE-2026-34070)CVE-2026-340703/31/2026development
Grafana March 2026 Multiple VulnerabilitiesCVE-2026-27880, CVE-2026-27879, CVE-2026-27877, CVE-2026-283753/30/2026development
suse_linux SUSE-SU-2026:1129-1: SUSE SLES15 : Security update for freerdp (Important) (SUSE-SU-2026:1129-1)CVE-2026-26965, CVE-2026-31885, CVE-2026-26955, CVE-2026-26271, CVE-2026-31883, CVE-2026-318063/29/2026development
suse_linux SUSE-SU-2026:1125-1: SUSE SLES15 : Security update for the Linux Kernel (Live Patch 0 for SUSE Linux Enterprise 15 SP7) (Important) (SUSE-SU-2026:1125-1)CVE-2025-68813, CVE-2025-71085, CVE-2025-68285, CVE-2025-68284, CVE-2025-40258, CVE-2025-40297, CVE-2025-38488, CVE-2025-40284, CVE-2025-381593/29/2026development
suse_linux SUSE-SU-2026:1126-1: SUSE SLED15 / SLES15 / openSUSE 15 : Security update for MozillaFirefox (Important) (SUSE-SU-2026:1126-1)CVE-2026-4702, CVE-2025-59375, CVE-2026-4705, CVE-2026-4688, CVE-2026-4716, CVE-2026-4713, CVE-2026-4706, CVE-2026-4687, CVE-2026-4708, CVE-2026-4696, CVE-2026-4694, CVE-2026-4720, CVE-2026-4715, CVE-2026-4684, CVE-2026-4700, CVE-2026-4691, CVE-2026-4707, CVE-2026-4717, CVE-2026-4704, CVE-2026-4686, CVE-2026-4712, CVE-2026-4710, CVE-2026-4709, CVE-2026-4697, CVE-2026-4689, CVE-2026-4718, CVE-2026-4699, CVE-2026-4701, CVE-2026-4693, CVE-2026-4719, CVE-2026-4721, CVE-2026-4711, CVE-2026-4695, CVE-2026-4685, CVE-2026-4714, CVE-2026-4690, CVE-2026-4692, CVE-2026-46983/29/2026development
suse_linux SUSE-SU-2026:1124-1: SUSE SLES15 : Security update for LibVNCServer (Important) (SUSE-SU-2026:1124-1)CVE-2026-32854, CVE-2026-328533/29/2026development
suse_linux SUSE-SU-2026:1130-1: SUSE SLES11 : Security update for the Linux Kernel (Important) (SUSE-SU-2026:1130-1)CVE-2021-47110, CVE-2026-23074, CVE-2025-21738, CVE-2026-23191, CVE-2026-230893/29/2026development
suse_linux SUSE-SU-2026:1118-1: SUSE SLES12 : Security update for docker-stable (Important) (SUSE-SU-2026:1118-1)CVE-2025-30204, CVE-2024-29018, CVE-2024-23650, CVE-2025-58181, CVE-2024-41110, CVE-2025-22869, CVE-2025-228683/29/2026development
cisco cisco-sa-iosxe-tls-dos-TVgLDEZL: Cisco IOS XE Software TLS Memory Exhaustion Denial of Service VulnerabilityCVE-2026-20113, CVE-2026-20104, CVE-2026-20114, CVE-2026-20084, CVE-2026-20112, CVE-2026-20115, CVE-2026-20110, CVE-2026-20125, CVE-2026-20086, CVE-2026-20083, CVE-2026-200043/26/2026development
cisco cisco-sa-bootp-WuBhNBxA: Cisco IOS XE Software for Catalyst 9000 Series Switches DHCP Snooping Denial of Service VulnerabilityCVE-2026-20113, CVE-2026-20104, CVE-2026-20114, CVE-2026-20084, CVE-2026-20112, CVE-2026-20115, CVE-2026-20110, CVE-2026-20125, CVE-2026-20086, CVE-2026-20083, CVE-2026-200043/26/2026development
cisco cisco-sa-iosxe_infodis-6J847uEB: Cisco IOS XE Software Secure Channel for Meraki Information Disclosure VulnerabilityCVE-2026-201153/26/2026development
cisco cisco-sa-iox-crlf-NvgKTKJZ: Cisco IOx Application Hosting Environment Carriage Return Line Feed Injection VulnerabilityCVE-2026-201133/26/2026development
cisco cisco-sa-iosxe-mntc-dos-LZweQcyq: Cisco IOS XE Software Denial of Service VulnerabilityCVE-2026-20113, CVE-2026-20104, CVE-2026-20114, CVE-2026-20084, CVE-2026-20112, CVE-2026-20115, CVE-2026-20110, CVE-2026-20125, CVE-2026-20086, CVE-2026-20083, CVE-2026-200043/26/2026development
cisco cisco-sa-iox-xss-LpGkzwtJ: Cisco IOx Application Hosting Environment Stored Cross-Site Scripting VulnerabilityCVE-2026-201123/26/2026development
cisco cisco-sa-iosxe-lobby-privesc-KwxBqJy: Cisco IOS XE Software Lobby Ambassador Privilege Escalation VulnerabilityCVE-2026-201143/26/2026development
cisco cisco-sa-ios-http-dos-sbv8XRpL: Cisco IOS Software and IOS XE Software Release 3E HTTP Server Denial of Service VulnerabilityCVE-2026-20113, CVE-2026-20104, CVE-2026-20114, CVE-2026-20084, CVE-2026-20112, CVE-2026-20115, CVE-2026-20110, CVE-2026-20125, CVE-2026-20086, CVE-2026-20083, CVE-2026-200043/26/2026development
cisco cisco-sa-scp-dos-duAdXtCg: Cisco IOS XE Software Secure Copy Protocol Server Denial of Service VulnerabilityCVE-2026-200833/26/2026development
Multiple Vulnerabilities in Quest KACE SMACVE-2025-32975, CVE-2025-32978, CVE-2025-32977, CVE-2025-329763/25/2026development
Update to DBeaver ACCVE-2021-38363/25/2026development