Plugins

As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 329352 plugins, covering 120357 CVE IDs and 30933 Bugtraq IDs.

Search

Newest

IDNameProductFamilySeverity
314954SAP NetWeaver AS ABAP Code Injection (3735359)NessusWeb Servers
medium
314953SAP NetWeaver AS ABAP OS Command Injection (3730019)NessusWeb Servers
medium
314952SAP NetWeaver AS ABAP SQL Injection (3724838)NessusWeb Servers
critical
314951SAP NetWeaver AS ABAP Reflected XSS (3728690)NessusWeb Servers
medium
314950Microsoft Azure Monitor Agent < 1.14.0 Elevation of Privilege (CVE-2026-32204)NessusWindows
high
314949Linux Distros Unpatched Vulnerability : CVE-2026-44638NessusMisc.
low
314948Linux Distros Unpatched Vulnerability : CVE-2026-43905NessusMisc.
high
314947Linux Distros Unpatched Vulnerability : CVE-2026-43904NessusMisc.
high
314946Linux Distros Unpatched Vulnerability : CVE-2026-43490NessusMisc.
critical
314945Linux Distros Unpatched Vulnerability : CVE-2026-44636NessusMisc.
high
314944Linux Distros Unpatched Vulnerability : CVE-2026-43996NessusMisc.
medium
314943Linux Distros Unpatched Vulnerability : CVE-2026-43906NessusMisc.
high
314942Linux Distros Unpatched Vulnerability : CVE-2026-44662NessusMisc.
medium
314941Linux Distros Unpatched Vulnerability : CVE-2026-44637NessusMisc.
high
314940Linux Distros Unpatched Vulnerability : CVE-2026-42327NessusMisc.
high
314939Linux Distros Unpatched Vulnerability : CVE-2026-43907NessusMisc.
high
314938Linux Distros Unpatched Vulnerability : CVE-2026-43908NessusMisc.
high
314937Linux Distros Unpatched Vulnerability : CVE-2026-43909NessusMisc.
high
314936Linux Distros Unpatched Vulnerability : CVE-2026-6811NessusMisc.
medium
314935Linux Distros Unpatched Vulnerability : CVE-2026-44673NessusMisc.
high
314934Linux Distros Unpatched Vulnerability : CVE-2026-43903NessusMisc.
high
314933Azure Linux 3.0 Security Update: CBL-Mariner Releases (CVE-2026-33814)NessusAzure Linux Local Security Checks
high
314932Debian dla-4583 : idle-python3.9 - security updateNessusDebian Local Security Checks
high
314931Nessus Network Monitor < 6.5.4 Multiple Vulnerabilities (TNS-2026-14)NessusMisc.
medium
314930Security Updates for Microsoft .NET Framework (May 2026)NessusWindows : Microsoft Bulletins
high
314929Security Updates for Azure Connected Machine Agent < 1.64 (May 2026)NessusWindows : Microsoft Bulletins
high
314928RHEL 9 : nginx:1.26 (RHSA-2026:17753)NessusRed Hat Local Security Checks
critical
314927RHEL 9 : nginx (RHSA-2026:17751)NessusRed Hat Local Security Checks
critical
314926RHEL 9 : nginx:1.24 (RHSA-2026:17752)NessusRed Hat Local Security Checks
critical
314925Microsoft 365 Copilot < 19.2604.43111.0 Spoofing (CVE-2026-41614)NessusWindows : Microsoft Bulletins
medium
314924Adobe Substance 3D Sampler <= 5.1.3 Arbitrary Code Execution (APSB26-54)NessusMisc.
high
314923Adobe Substance 3D Designer <= 15.1.0 Multiple Vulnerabilities (APSB26-52)NessusMisc.
medium
314922Ivanti Endpoint Manager < 2024 SU6 Multiple VulnerabilitiesNessusWindows
high
314921Microsoft Visual Studio Code Live Preview Extension < 0.4.19 Path Traversal (CVE-2026-41612)NessusMisc.
medium
314920Microsoft Visual Studio Code < 1.119.1 Multiple VulnerabilitiesNessusMisc.
high
314919Adobe Substance 3D Painter <= 12.0.2 Multiple Vulnerabilities (APSB26-55)NessusMisc.
high
314918Photon OS 5.0: Protobuf PHSA-2026-5.0-0849NessusPhotonOS Local Security Checks
high
314917Spring Framework 5.3.x < 5.3.48 / 6.1.x < 6.1.27 / 6.2.x < 6.2.18 / 7.0.x < 7.0.7 Multiple DoSNessusMisc.
medium
314916FreeBSD : py-setuptools -- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (690144e9-4f88-11f1-982e-00a098b42aeb)NessusFreeBSD Local Security Checks
high
314915FreeBSD : www/nginx -- Remote Code Execution/DoS (3414ac89-4f9f-11f1-a1c0-0050569f0b83)NessusFreeBSD Local Security Checks
critical
314914FreeBSD : PostgreSQL -- Multiple vulnerabilities (7185ecc9-4fb7-11f1-bc50-6cc21735f730)NessusFreeBSD Local Security Checks
high
314913FreeBSD : mail/mailpit -- multiple vulnerabilities (6e701ad2-4f61-11f1-af6d-10ffe07f9334)NessusFreeBSD Local Security Checks
high
314912Open WebUI < 0.9.5 Multiple VulnerabilitiesNessusArtificial Intelligence
high
314911Open WebUI Web DetectionNessusWeb Servers
info
314910Next.js Framework 12.2.x < 15.5.16 / 16.x < 16.2.5 Information DisclosureNessusMisc.
high
314909Next.js Framework 15.4.x < 15.5.16 / 16.x < 16.2.5 Authorization BypassNessusMisc.
high
314908Next.js Framework 15.2.x < 15.5.16 / 16.x < 16.2.5 Authorization BypassNessusMisc.
high
314907Next.js Framework 13.4.x < 15.5.16 / 16.x < 16.2.5 Stored XSSNessusMisc.
medium
314906Next.js Framework 13.x < 15.5.16 / 16.x < 16.2.5 XSSNessusMisc.
medium
314905Traefik 2.x < 2.11.46 / 3.x < 3.6.17 / 3.7.x < 3.7.1 Authentication Bypass (CVE-2026-44774)NessusMacOS X Local Security Checks
medium

Updated

IDNameProductFamilySeverity
99364Microsoft .NET Security Rollup EnumerationNessusWindows
info
505310Siemens SIMATIC Improper Neutralization of Input During Web Page Generation (CVE-2025-40943)Tenable OT SecurityTenable.ot
critical
500055Siemens SIMATIC S7-1200 and S7-1500 CPU Families Missing Support For Integrity Check (CVE-2019-10943)Tenable OT SecurityTenable.ot
high
314888Linux Distros Unpatched Vulnerability : CVE-2026-42578NessusMisc.
medium
314743Linux Distros Unpatched Vulnerability : CVE-2026-44432NessusMisc.
high
314735Linux Distros Unpatched Vulnerability : CVE-2026-44431NessusMisc.
high
314709Oracle Linux 9 : kernel (ELSA-2026-16206)NessusOracle Linux Local Security Checks
high
314701Palo Alto Networks Prisma SD-WAN ION 6.3.x < 6.3.6-b10 / 6.4.x < 6.4.3-b8 / 6.5.x < 6.5.3-b15 Multiple VulnerabilitiesNessusPalo Alto Local Security Checks
high
314686RockyLinux 8 : kernel (RLSA-2026:16195)NessusRocky Linux Local Security Checks
high
314685RockyLinux 8 : kernel-rt (RLSA-2026:16196)NessusRocky Linux Local Security Checks
high
314681Ivanti Secure Access Client 22.x < 22.8R6 Multiple VulnerabilitiesNessusWindows
high
314680Security Update for Microsoft .NET Core SDK (May 2026)NessusWindows
high
314679Security Update for Microsoft .NET Core (May 2026)NessusWindows
high
314678Security Updates for Microsoft Windows Admin Center (May 2026)NessusWindows
high
314677Adobe Connect <= 2025.9.15 Multiple Vulnerabilities (APSB26-50)NessusCGI abuses
critical
314676Security Updates for Microsoft Excel Products C2R (May 2026)NessusWindows
high
314675Security Updates for Microsoft Office Products C2R (May 2026)NessusWindows
high
314674Security Updates for Microsoft Word Products C2R (May 2026)NessusWindows
high
314673Vim < 9.2.0435 OS Command Injection (GHSA-hwg5-3cxw-wvvg)NessusMisc.
medium
314672Vim < 9.2.0450 Heap Buffer Overflow (GHSA-q4jv-r9gj-6cwv)NessusMisc.
medium
314670Palo Alto GlobalProtect App MacOS 6.0.x < 6.0.13 / 6.2.x < 6.2.8-h10 / 6.3.x < 6.3.3-h9 Improper Certificate Validation (CVE-2026-0249)NessusMacOS X Local Security Checks
high
314669Palo Alto GlobalProtect App 6.0.x < 6.0.13 / 6.2.x < 6.2.8-h10 / 6.3.x < 6.3.3-h9 Multiple VulnerabilitiesNessusMisc.
high
314668Security Updates for Microsoft SQL Server (May 2026)NessusWindows : Microsoft Bulletins
high
314667Security Updates for Microsoft SQL Server (May 2026) (Remote)NessusMisc.
high
314659Linux Distros Unpatched Vulnerability : CVE-2026-8201NessusMisc.
medium
314656Linux Distros Unpatched Vulnerability : CVE-2026-31221NessusMisc.
high
314649Linux Distros Unpatched Vulnerability : CVE-2026-8401NessusMisc.
critical
314648ImageMagick < 6.9.13-46 / 7.x < 7.1.2-21 Stack Buffer OverflowNessusMisc.
medium
314647Security Updates for Microsoft Visual Studio Products (May 2026)NessusWindows : Microsoft Bulletins
high
314641RockyLinux 9 : kernel (RLSA-2026:16206)NessusRocky Linux Local Security Checks
high
314637RockyLinux 10 : kernel (RLSA-2026:16062)NessusRocky Linux Local Security Checks
high
314610JetBrains TeamCity <= 2025.11.4 Privilege Escalation (CVE-2026-44413)NessusMisc.
high
314605RedShift JDBC Driver < 2.2.2 Arbitrary Class Loading (CVE-2026-8178)NessusMisc.
critical
314603Fedora 42 : php (2026-3a58db70ca)NessusFedora Local Security Checks
critical
314601Fedora 42 : kernel (2026-ec1c523fdb)NessusFedora Local Security Checks
high
314593FreeBSD : Gitlab -- vulnerabilities (b3cb8f40-4f4c-11f1-80f1-2cf05da270f3)NessusFreeBSD Local Security Checks
medium
314553GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6063)NessusCGI abuses
medium
314551GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4527)NessusCGI abuses
medium
314550GitLab 16.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1322)NessusCGI abuses
medium
314549GitLab 8.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8280)NessusCGI abuses
medium
314548GitLab 9.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1659)NessusCGI abuses
high
314547GitLab 18.9.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4524)NessusCGI abuses
medium
314546GitLab 18.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7377)NessusCGI abuses
high
314545GitLab 15.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6883)NessusCGI abuses
low
314544GitLab 16.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-2900)NessusCGI abuses
low
314543GitLab 17.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1338)NessusCGI abuses
medium
314542GitLab 18.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3607)NessusCGI abuses
medium
314541GitLab 18.11 < 18.11.3 (CVE-2026-6335)NessusCGI abuses
medium
314540GitLab 16.4 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7481)NessusCGI abuses
medium
314539GitLab 15.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8144)NessusCGI abuses
medium