As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 329352 plugins, covering 120357 CVE IDs and 30933 Bugtraq IDs.
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 314954 | SAP NetWeaver AS ABAP Code Injection (3735359) | Nessus | Web Servers | medium |
| 314953 | SAP NetWeaver AS ABAP OS Command Injection (3730019) | Nessus | Web Servers | medium |
| 314952 | SAP NetWeaver AS ABAP SQL Injection (3724838) | Nessus | Web Servers | critical |
| 314951 | SAP NetWeaver AS ABAP Reflected XSS (3728690) | Nessus | Web Servers | medium |
| 314950 | Microsoft Azure Monitor Agent < 1.14.0 Elevation of Privilege (CVE-2026-32204) | Nessus | Windows | high |
| 314949 | Linux Distros Unpatched Vulnerability : CVE-2026-44638 | Nessus | Misc. | low |
| 314948 | Linux Distros Unpatched Vulnerability : CVE-2026-43905 | Nessus | Misc. | high |
| 314947 | Linux Distros Unpatched Vulnerability : CVE-2026-43904 | Nessus | Misc. | high |
| 314946 | Linux Distros Unpatched Vulnerability : CVE-2026-43490 | Nessus | Misc. | critical |
| 314945 | Linux Distros Unpatched Vulnerability : CVE-2026-44636 | Nessus | Misc. | high |
| 314944 | Linux Distros Unpatched Vulnerability : CVE-2026-43996 | Nessus | Misc. | medium |
| 314943 | Linux Distros Unpatched Vulnerability : CVE-2026-43906 | Nessus | Misc. | high |
| 314942 | Linux Distros Unpatched Vulnerability : CVE-2026-44662 | Nessus | Misc. | medium |
| 314941 | Linux Distros Unpatched Vulnerability : CVE-2026-44637 | Nessus | Misc. | high |
| 314940 | Linux Distros Unpatched Vulnerability : CVE-2026-42327 | Nessus | Misc. | high |
| 314939 | Linux Distros Unpatched Vulnerability : CVE-2026-43907 | Nessus | Misc. | high |
| 314938 | Linux Distros Unpatched Vulnerability : CVE-2026-43908 | Nessus | Misc. | high |
| 314937 | Linux Distros Unpatched Vulnerability : CVE-2026-43909 | Nessus | Misc. | high |
| 314936 | Linux Distros Unpatched Vulnerability : CVE-2026-6811 | Nessus | Misc. | medium |
| 314935 | Linux Distros Unpatched Vulnerability : CVE-2026-44673 | Nessus | Misc. | high |
| 314934 | Linux Distros Unpatched Vulnerability : CVE-2026-43903 | Nessus | Misc. | high |
| 314933 | Azure Linux 3.0 Security Update: CBL-Mariner Releases (CVE-2026-33814) | Nessus | Azure Linux Local Security Checks | high |
| 314932 | Debian dla-4583 : idle-python3.9 - security update | Nessus | Debian Local Security Checks | high |
| 314931 | Nessus Network Monitor < 6.5.4 Multiple Vulnerabilities (TNS-2026-14) | Nessus | Misc. | medium |
| 314930 | Security Updates for Microsoft .NET Framework (May 2026) | Nessus | Windows : Microsoft Bulletins | high |
| 314929 | Security Updates for Azure Connected Machine Agent < 1.64 (May 2026) | Nessus | Windows : Microsoft Bulletins | high |
| 314928 | RHEL 9 : nginx:1.26 (RHSA-2026:17753) | Nessus | Red Hat Local Security Checks | critical |
| 314927 | RHEL 9 : nginx (RHSA-2026:17751) | Nessus | Red Hat Local Security Checks | critical |
| 314926 | RHEL 9 : nginx:1.24 (RHSA-2026:17752) | Nessus | Red Hat Local Security Checks | critical |
| 314925 | Microsoft 365 Copilot < 19.2604.43111.0 Spoofing (CVE-2026-41614) | Nessus | Windows : Microsoft Bulletins | medium |
| 314924 | Adobe Substance 3D Sampler <= 5.1.3 Arbitrary Code Execution (APSB26-54) | Nessus | Misc. | high |
| 314923 | Adobe Substance 3D Designer <= 15.1.0 Multiple Vulnerabilities (APSB26-52) | Nessus | Misc. | medium |
| 314922 | Ivanti Endpoint Manager < 2024 SU6 Multiple Vulnerabilities | Nessus | Windows | high |
| 314921 | Microsoft Visual Studio Code Live Preview Extension < 0.4.19 Path Traversal (CVE-2026-41612) | Nessus | Misc. | medium |
| 314920 | Microsoft Visual Studio Code < 1.119.1 Multiple Vulnerabilities | Nessus | Misc. | high |
| 314919 | Adobe Substance 3D Painter <= 12.0.2 Multiple Vulnerabilities (APSB26-55) | Nessus | Misc. | high |
| 314918 | Photon OS 5.0: Protobuf PHSA-2026-5.0-0849 | Nessus | PhotonOS Local Security Checks | high |
| 314917 | Spring Framework 5.3.x < 5.3.48 / 6.1.x < 6.1.27 / 6.2.x < 6.2.18 / 7.0.x < 7.0.7 Multiple DoS | Nessus | Misc. | medium |
| 314916 | FreeBSD : py-setuptools -- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (690144e9-4f88-11f1-982e-00a098b42aeb) | Nessus | FreeBSD Local Security Checks | high |
| 314915 | FreeBSD : www/nginx -- Remote Code Execution/DoS (3414ac89-4f9f-11f1-a1c0-0050569f0b83) | Nessus | FreeBSD Local Security Checks | critical |
| 314914 | FreeBSD : PostgreSQL -- Multiple vulnerabilities (7185ecc9-4fb7-11f1-bc50-6cc21735f730) | Nessus | FreeBSD Local Security Checks | high |
| 314913 | FreeBSD : mail/mailpit -- multiple vulnerabilities (6e701ad2-4f61-11f1-af6d-10ffe07f9334) | Nessus | FreeBSD Local Security Checks | high |
| 314912 | Open WebUI < 0.9.5 Multiple Vulnerabilities | Nessus | Artificial Intelligence | high |
| 314911 | Open WebUI Web Detection | Nessus | Web Servers | info |
| 314910 | Next.js Framework 12.2.x < 15.5.16 / 16.x < 16.2.5 Information Disclosure | Nessus | Misc. | high |
| 314909 | Next.js Framework 15.4.x < 15.5.16 / 16.x < 16.2.5 Authorization Bypass | Nessus | Misc. | high |
| 314908 | Next.js Framework 15.2.x < 15.5.16 / 16.x < 16.2.5 Authorization Bypass | Nessus | Misc. | high |
| 314907 | Next.js Framework 13.4.x < 15.5.16 / 16.x < 16.2.5 Stored XSS | Nessus | Misc. | medium |
| 314906 | Next.js Framework 13.x < 15.5.16 / 16.x < 16.2.5 XSS | Nessus | Misc. | medium |
| 314905 | Traefik 2.x < 2.11.46 / 3.x < 3.6.17 / 3.7.x < 3.7.1 Authentication Bypass (CVE-2026-44774) | Nessus | MacOS X Local Security Checks | medium |
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 99364 | Microsoft .NET Security Rollup Enumeration | Nessus | Windows | info |
| 505310 | Siemens SIMATIC Improper Neutralization of Input During Web Page Generation (CVE-2025-40943) | Tenable OT Security | Tenable.ot | critical |
| 500055 | Siemens SIMATIC S7-1200 and S7-1500 CPU Families Missing Support For Integrity Check (CVE-2019-10943) | Tenable OT Security | Tenable.ot | high |
| 314888 | Linux Distros Unpatched Vulnerability : CVE-2026-42578 | Nessus | Misc. | medium |
| 314743 | Linux Distros Unpatched Vulnerability : CVE-2026-44432 | Nessus | Misc. | high |
| 314735 | Linux Distros Unpatched Vulnerability : CVE-2026-44431 | Nessus | Misc. | high |
| 314709 | Oracle Linux 9 : kernel (ELSA-2026-16206) | Nessus | Oracle Linux Local Security Checks | high |
| 314701 | Palo Alto Networks Prisma SD-WAN ION 6.3.x < 6.3.6-b10 / 6.4.x < 6.4.3-b8 / 6.5.x < 6.5.3-b15 Multiple Vulnerabilities | Nessus | Palo Alto Local Security Checks | high |
| 314686 | RockyLinux 8 : kernel (RLSA-2026:16195) | Nessus | Rocky Linux Local Security Checks | high |
| 314685 | RockyLinux 8 : kernel-rt (RLSA-2026:16196) | Nessus | Rocky Linux Local Security Checks | high |
| 314681 | Ivanti Secure Access Client 22.x < 22.8R6 Multiple Vulnerabilities | Nessus | Windows | high |
| 314680 | Security Update for Microsoft .NET Core SDK (May 2026) | Nessus | Windows | high |
| 314679 | Security Update for Microsoft .NET Core (May 2026) | Nessus | Windows | high |
| 314678 | Security Updates for Microsoft Windows Admin Center (May 2026) | Nessus | Windows | high |
| 314677 | Adobe Connect <= 2025.9.15 Multiple Vulnerabilities (APSB26-50) | Nessus | CGI abuses | critical |
| 314676 | Security Updates for Microsoft Excel Products C2R (May 2026) | Nessus | Windows | high |
| 314675 | Security Updates for Microsoft Office Products C2R (May 2026) | Nessus | Windows | high |
| 314674 | Security Updates for Microsoft Word Products C2R (May 2026) | Nessus | Windows | high |
| 314673 | Vim < 9.2.0435 OS Command Injection (GHSA-hwg5-3cxw-wvvg) | Nessus | Misc. | medium |
| 314672 | Vim < 9.2.0450 Heap Buffer Overflow (GHSA-q4jv-r9gj-6cwv) | Nessus | Misc. | medium |
| 314670 | Palo Alto GlobalProtect App MacOS 6.0.x < 6.0.13 / 6.2.x < 6.2.8-h10 / 6.3.x < 6.3.3-h9 Improper Certificate Validation (CVE-2026-0249) | Nessus | MacOS X Local Security Checks | high |
| 314669 | Palo Alto GlobalProtect App 6.0.x < 6.0.13 / 6.2.x < 6.2.8-h10 / 6.3.x < 6.3.3-h9 Multiple Vulnerabilities | Nessus | Misc. | high |
| 314668 | Security Updates for Microsoft SQL Server (May 2026) | Nessus | Windows : Microsoft Bulletins | high |
| 314667 | Security Updates for Microsoft SQL Server (May 2026) (Remote) | Nessus | Misc. | high |
| 314659 | Linux Distros Unpatched Vulnerability : CVE-2026-8201 | Nessus | Misc. | medium |
| 314656 | Linux Distros Unpatched Vulnerability : CVE-2026-31221 | Nessus | Misc. | high |
| 314649 | Linux Distros Unpatched Vulnerability : CVE-2026-8401 | Nessus | Misc. | critical |
| 314648 | ImageMagick < 6.9.13-46 / 7.x < 7.1.2-21 Stack Buffer Overflow | Nessus | Misc. | medium |
| 314647 | Security Updates for Microsoft Visual Studio Products (May 2026) | Nessus | Windows : Microsoft Bulletins | high |
| 314641 | RockyLinux 9 : kernel (RLSA-2026:16206) | Nessus | Rocky Linux Local Security Checks | high |
| 314637 | RockyLinux 10 : kernel (RLSA-2026:16062) | Nessus | Rocky Linux Local Security Checks | high |
| 314610 | JetBrains TeamCity <= 2025.11.4 Privilege Escalation (CVE-2026-44413) | Nessus | Misc. | high |
| 314605 | RedShift JDBC Driver < 2.2.2 Arbitrary Class Loading (CVE-2026-8178) | Nessus | Misc. | critical |
| 314603 | Fedora 42 : php (2026-3a58db70ca) | Nessus | Fedora Local Security Checks | critical |
| 314601 | Fedora 42 : kernel (2026-ec1c523fdb) | Nessus | Fedora Local Security Checks | high |
| 314593 | FreeBSD : Gitlab -- vulnerabilities (b3cb8f40-4f4c-11f1-80f1-2cf05da270f3) | Nessus | FreeBSD Local Security Checks | medium |
| 314553 | GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6063) | Nessus | CGI abuses | medium |
| 314551 | GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4527) | Nessus | CGI abuses | medium |
| 314550 | GitLab 16.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1322) | Nessus | CGI abuses | medium |
| 314549 | GitLab 8.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8280) | Nessus | CGI abuses | medium |
| 314548 | GitLab 9.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1659) | Nessus | CGI abuses | high |
| 314547 | GitLab 18.9.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4524) | Nessus | CGI abuses | medium |
| 314546 | GitLab 18.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7377) | Nessus | CGI abuses | high |
| 314545 | GitLab 15.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6883) | Nessus | CGI abuses | low |
| 314544 | GitLab 16.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-2900) | Nessus | CGI abuses | low |
| 314543 | GitLab 17.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1338) | Nessus | CGI abuses | medium |
| 314542 | GitLab 18.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3607) | Nessus | CGI abuses | medium |
| 314541 | GitLab 18.11 < 18.11.3 (CVE-2026-6335) | Nessus | CGI abuses | medium |
| 314540 | GitLab 16.4 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7481) | Nessus | CGI abuses | medium |
| 314539 | GitLab 15.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8144) | Nessus | CGI abuses | medium |