As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 437970 plugins, covering 149774 CVE IDs and 32957 Bugtraq IDs.
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 447602 | SCA: security update for orval (GHSA-3575-w9fc-c2j6) | Tenable Cloud Security | SCA Checks | critical |
| 447602 | SCA: security update for orval (GHSA-3575-w9fc-c2j6) | Tenable Self-Hosted Container Security | SCA Checks | critical |
| 447584 | SCA: security update for open-webui (GHSA-cfvq-fj53-j2c7) | Tenable Cloud Security | SCA Checks | medium |
| 447584 | SCA: security update for open-webui (GHSA-cfvq-fj53-j2c7) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 447583 | SCA: security update for org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat-catalina (GHSA-gcx9-497g-6cp6) | Tenable Cloud Security | SCA Checks | critical |
| 447583 | SCA: security update for org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat-catalina (GHSA-gcx9-497g-6cp6) | Tenable Self-Hosted Container Security | SCA Checks | critical |
| 447582 | SCA: security update for github.com/openchoreo/openchoreo (GHSA-c5f6-2rm9-2w8g) | Tenable Cloud Security | SCA Checks | medium |
| 447582 | SCA: security update for github.com/openchoreo/openchoreo (GHSA-c5f6-2rm9-2w8g) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 447581 | SCA: security update for open-webui (GHSA-x757-hv69-jr45) | Tenable Cloud Security | SCA Checks | high |
| 447581 | SCA: security update for open-webui (GHSA-x757-hv69-jr45) | Tenable Self-Hosted Container Security | SCA Checks | high |
| 447580 | SCA: security update for link-preview-js (GHSA-cpjf-6666-r8fx) | Tenable Cloud Security | SCA Checks | high |
| 447580 | SCA: security update for link-preview-js (GHSA-cpjf-6666-r8fx) | Tenable Self-Hosted Container Security | SCA Checks | high |
| 447579 | SCA: security update for github.com/openchoreo/openchoreo (GHSA-qh9r-j7rp-4x2m) | Tenable Cloud Security | SCA Checks | critical |
| 447579 | SCA: security update for github.com/openchoreo/openchoreo (GHSA-qh9r-j7rp-4x2m) | Tenable Self-Hosted Container Security | SCA Checks | critical |
| 447538 | SCA: security update for github.com/ethereum/go-ethereum (GHSA-pvx3-gm3c-gmpr) | Tenable Cloud Security | SCA Checks | high |
| 447538 | SCA: security update for github.com/ethereum/go-ethereum (GHSA-pvx3-gm3c-gmpr) | Tenable Self-Hosted Container Security | SCA Checks | high |
| 447537 | SCA: security update for open-webui (GHSA-crh6-pj8c-xrhc) | Tenable Cloud Security | SCA Checks | medium |
| 447537 | SCA: security update for open-webui (GHSA-crh6-pj8c-xrhc) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 447536 | SCA: security update for open-webui (GHSA-vh96-p962-544h) | Tenable Cloud Security | SCA Checks | medium |
| 447536 | SCA: security update for open-webui (GHSA-vh96-p962-544h) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 447535 | SCA: security update for org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat-catalina (GHSA-9xv2-5v5q-p794) | Tenable Cloud Security | SCA Checks | critical |
| 447535 | SCA: security update for org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat-catalina (GHSA-9xv2-5v5q-p794) | Tenable Self-Hosted Container Security | SCA Checks | critical |
| 447534 | SCA: security update for omnigent (GHSA-756x-9hf6-q4h4) | Tenable Cloud Security | SCA Checks | high |
| 447534 | SCA: security update for omnigent (GHSA-756x-9hf6-q4h4) | Tenable Self-Hosted Container Security | SCA Checks | high |
| 447533 | SCA: security update for github.com/seaweedfs/seaweedfs (GHSA-gv5w-hfx8-8cwq) | Tenable Cloud Security | SCA Checks | high |
| 447533 | SCA: security update for github.com/seaweedfs/seaweedfs (GHSA-gv5w-hfx8-8cwq) | Tenable Self-Hosted Container Security | SCA Checks | high |
| 447532 | SCA: security update for getgrav/grav (GHSA-928x-9mpw-8h56) | Tenable Cloud Security | SCA Checks | medium |
| 447532 | SCA: security update for getgrav/grav (GHSA-928x-9mpw-8h56) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 342638 | RockyLinux 8 : gegl (RLSA-2026:62425) | Nessus | Rocky Linux Local Security Checks | high |
| 342637 | VMware Workstation 25H2, 26H1.x < 26H1u1 Multiple Vulnerabilities (VMSA-2026-0007) | Nessus | General | critical |
| 342636 | VMware Fusion 25H2, 26H1.x < 26H1u1 Multiple Vulnerabilities (VMSA-2026-0007) | Nessus | MacOS X Local Security Checks | critical |
| 342635 | Node.js Module mariadb < 3.2.4 / 3.3.3 / 3.4.6 / 3.5.3 Information Disclosure | Nessus | Misc. | high |
| 342634 | Dell PowerProtect Cyber Recovery < 20.3.0.0 Multiple Vulnerabilities (DSA-2026-370) | Nessus | CGI abuses | high |
| 342633 | ManageEngine PAM360 < Build 8561 SQLi (CVE-2026-14828) | Nessus | CGI abuses | high |
| 342632 | ManageEngine Access Manager Plus < Build 4405 SQLi (CVE-2026-14828) | Nessus | CGI abuses | high |
| 342631 | ManageEngine Password Manager Pro < Build 13235 SQLi (CVE-2026-14828) | Nessus | CGI abuses | high |
| 342630 | AlmaLinux 10 : php (ALSA-2026:62614) | Nessus | Alma Linux Local Security Checks | critical |
| 342629 | Linux Distros Unpatched Vulnerability : CVE-2026-85090 | Nessus | Misc. | critical |
| 342628 | Linux Distros Unpatched Vulnerability : CVE-2026-74835 | Nessus | Misc. | high |
| 342627 | Linux Distros Unpatched Vulnerability : CVE-2026-74994 | Nessus | Misc. | medium |
| 342626 | Linux Distros Unpatched Vulnerability : CVE-2026-65108 | Nessus | Misc. | critical |
| 342625 | Linux Distros Unpatched Vulnerability : CVE-2026-85150 | Nessus | Misc. | high |
| 342624 | Linux Distros Unpatched Vulnerability : CVE-2026-70409 | Nessus | Misc. | medium |
| 342623 | Linux Distros Unpatched Vulnerability : CVE-2026-71380 | Nessus | Misc. | high |
| 342622 | Linux Distros Unpatched Vulnerability : CVE-2026-52295 | Nessus | Misc. | critical |
| 342621 | AlmaLinux 10 : go-fdo-server (ALSA-2026:62578) | Nessus | Alma Linux Local Security Checks | high |
| 342620 | AlmaLinux 8 : kernel-rt (ALSA-2026:63013) | Nessus | Alma Linux Local Security Checks | high |
| 342619 | TencentOS Server 3: gimp:2.8 (TSSA-2026:0972) | Nessus | Tencent Local Security Checks | high |
| 342618 | RockyLinux 8 : perl-DBI (RLSA-2026:62667) | Nessus | Rocky Linux Local Security Checks | critical |
| 342617 | libcurl 7.44.0 < 8.22.0 HTTP/2 Server Push Use-After-Free | Nessus | Misc. | medium |
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 93121 | Oracle Access Manager Webgate Information Disclosure (July 2016 CPU) | Nessus | Misc. | medium |
| 90860 | Oracle Application Testing Suite Detection | Nessus | Misc. | info |
| 90679 | Oracle WebLogic Server Multiple Vulnerabilities (April 2016 CPU) | Nessus | Misc. | critical |
| 88087 | Oracle WebLogic Portal Detection | Nessus | Misc. | info |
| 88053 | Oracle WebLogic Server Multiple Vulnerabilities (January 2016 CPU) | Nessus | Misc. | high |
| 87209 | Oracle WebLogic Server Java Object Deserialization RCE (Local Check) | Nessus | Misc. | critical |
| 86575 | Oracle Enterprise Manager Agent Installation Detection (credentialed check) | Nessus | Misc. | info |
| 84823 | Oracle WebLogic Server Multiple Vulnerabilities (July 2015 CPU) | Nessus | Misc. | medium |
| 82822 | Oracle WebLogic Server Multiple Vulnerabilities (April 2015 CPU) (POODLE) | Nessus | Misc. | medium |
| 81048 | Oracle Forms and Reports Multiple Unspecified Vulnerabilities (January 2015 CPU) | Nessus | Misc. | medium |
| 80965 | Oracle Enterprise Manager Cloud Control Installation Detection (credentialed check) | Nessus | Misc. | info |
| 80909 | Oracle WebLogic Server Multiple Vulnerabilities (January 2015 CPU) | Nessus | Misc. | high |
| 78910 | Oracle JDeveloper Installation Detection | Nessus | Misc. | info |
| 78699 | Oracle Adaptive Access Manager Server Detection | Nessus | Misc. | info |
| 78076 | Oracle Application Express (APEX) / REST Data Services Listener Installation Detection | Nessus | Misc. | info |
| 77421 | Oracle Access Manager Unspecified Vulnerability (credentialed check, April 2014 CPU) | Nessus | Windows | medium |
| 76527 | Oracle WebLogic Server Multiple Vulnerabilities (July 2014 CPU) | Nessus | Misc. | high |
| 74466 | Oracle Siebel CRM Server Detection | Nessus | Windows | info |
| 74151 | Oracle Event Processing CVE-2014-2424 Unspecified Vulnerability (April 2014 CPU) | Nessus | Misc. | medium |
| 74150 | Oracle Event Processing Installation Detection (credentialed check) | Nessus | Misc. | info |
| 73914 | Oracle WebLogic Server Security Subcomponent Unspecified Vulnerability (April 2014 CPU) | Nessus | Misc. | medium |
| 73825 | Oracle Data Quality and Profiling Client Detection | Nessus | Windows | info |
| 73614 | Oracle Access Manager Unspecified WebGate Webserver Plugin Vulnerability | Nessus | Misc. | medium |
| 72776 | Oracle WebCenter Sites Local Installation Detection | Nessus | Windows | info |
| 72213 | Oracle Access Manager Server Installation Detection (credentialed check) | Nessus | Misc. | info |
| 72064 | Oracle WebCenter Portal Installation Detection | Nessus | Misc. | info |
| 72043 | Oracle Internet Directory LDAP Server Unspecified Remote Information Disclosure | Nessus | Misc. | medium |
| 71644 | Oracle Database Patch Info (credentialed check) | Nessus | Databases | info |
| 71643 | Oracle Installed Software Enumeration (Windows) | Nessus | Windows | info |
| 505310 | Siemens SIMATIC Improper Neutralization of Input During Web Page Generation (CVE-2025-40943) | Tenable OT Security | Tenable.ot | critical |
| 446891 | SCA: security update for com.xuxueli:xxl-job-core (GHSA-f8vw-8vgh-22r9) | Tenable Cloud Security | SCA Checks | medium |
| 446891 | SCA: security update for com.xuxueli:xxl-job-core (GHSA-f8vw-8vgh-22r9) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446817 | SCA: security update for wwbn/avideo (GHSA-xr6f-h4x7-r6qp) | Tenable Cloud Security | SCA Checks | critical |
| 446817 | SCA: security update for wwbn/avideo (GHSA-xr6f-h4x7-r6qp) | Tenable Self-Hosted Container Security | SCA Checks | critical |
| 446807 | SCA: security update for AstrBot (GHSA-mq9q-25hm-g4gp) | Tenable Cloud Security | SCA Checks | medium |
| 446807 | SCA: security update for AstrBot (GHSA-mq9q-25hm-g4gp) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446803 | SCA: security update for deepsearcher (GHSA-43px-gpwc-q84v) | Tenable Cloud Security | SCA Checks | medium |
| 446803 | SCA: security update for deepsearcher (GHSA-43px-gpwc-q84v) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446768 | SCA: security update for auto-favicon (GHSA-vmh7-9c7h-2pgg) | Tenable Cloud Security | SCA Checks | medium |
| 446768 | SCA: security update for auto-favicon (GHSA-vmh7-9c7h-2pgg) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446761 | SCA: security update for devise-two-factor (GHSA-chcr-x7hc-8fp8) | Tenable Cloud Security | SCA Checks | medium |
| 446761 | SCA: security update for devise-two-factor (GHSA-chcr-x7hc-8fp8) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446749 | SCA: security update for com.github.ulisesbocchio:jasypt-spring-boot, com.github.ulisesbocchio:jasypt-spring-boot-starter (GHSA-jgj7-c8vj-w563) | Tenable Cloud Security | SCA Checks | medium |
| 446749 | SCA: security update for com.github.ulisesbocchio:jasypt-spring-boot, com.github.ulisesbocchio:jasypt-spring-boot-starter (GHSA-jgj7-c8vj-w563) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446740 | SCA: security update for vyper (GHSA-qhr6-mgqr-mchm) | Tenable Cloud Security | SCA Checks | medium |
| 446740 | SCA: security update for vyper (GHSA-qhr6-mgqr-mchm) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446726 | SCA: security update for ml-logger (GHSA-8x9j-2p8r-7xc6) | Tenable Cloud Security | SCA Checks | medium |
| 446726 | SCA: security update for ml-logger (GHSA-8x9j-2p8r-7xc6) | Tenable Self-Hosted Container Security | SCA Checks | medium |
| 446723 | SCA: security update for @wong2/mcp-cli (GHSA-p6rm-483j-37jf) | Tenable Cloud Security | SCA Checks | medium |
| 446723 | SCA: security update for @wong2/mcp-cli (GHSA-p6rm-483j-37jf) | Tenable Self-Hosted Container Security | SCA Checks | medium |