Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsUpdatedStatus
ubuntu_linux USN-8426-1: Ubuntu 20.04 LTS / Ubuntu Pro FIPS-updates 22.04 LTS : Linux kernel (Azure) vulnerabilities (USN-8426-1)CVE-2026-31504, CVE-2026-43284, CVE-2024-50060, CVE-2026-46333, CVE-2026-43494, CVE-2026-43033, CVE-2026-23351, CVE-2024-35862, CVE-2026-43503, CVE-2026-31533, CVE-2026-46300, CVE-2026-31419, CVE-2026-31431, CVE-2026-43078, CVE-2026-43500, CVE-2026-46028, CVE-2026-23274, CVE-2026-430772026/6/12development
ubuntu_linux USN-8420-1: Ubuntu 22.04 LTS / Ubuntu 24.04 LTS / Ubuntu 25.10 / Ubuntu 26.04 LTS : .NET vulnerabilities (USN-8420-1)CVE-2026-45591, CVE-2026-454912026/6/12development
ubuntu_linux USN-8418-1: Ubuntu 16.04 LTS / Ubuntu 18.04 LTS / Ubuntu 20.04 LTS / Ubuntu 22.04 LTS / Ubuntu 24.04 LTS / Ubuntu 25.10 / Ubuntu 26.04 LTS : Crypt-SaltedHash vulnerability (USN-8418-1)CVE-2026-473722026/6/12development
ubuntu_linux USN-8423-1: Ubuntu 20.04 LTS / Ubuntu 22.04 LTS / Ubuntu 24.04 LTS / Ubuntu 26.04 LTS : lwIP vulnerabilities (USN-8423-1)CVE-2020-22284, CVE-2026-8836, CVE-2020-8597, CVE-2020-222832026/6/12development
freebsd 644d5e6c-1bd9-4904-8440-16c04100a2e1: h2o -- stack overflow serving static files on musl libcCVE-2026-444532026/6/12development
freebsd 35c57495-2231-4733-a66e-044f3dad8b21: h2o -- HTTP/2 state amplification denial of service2026/6/12development
freebsd fba766f4-ccda-4e1b-8875-ab857c6a6532: h2o -- heap overrun parsing zero-length SNICVE-2026-444522026/6/12development
freebsd ac9bab80-6618-11f1-8e04-2cf05da270f3: Gitlab -- vulnerabilitiesCVE-2026-10733, CVE-2026-10087, CVE-2026-3553, CVE-2026-7250, CVE-2026-8589, CVE-2026-1500, CVE-2026-6552, CVE-2026-6976, CVE-2026-6277, CVE-2026-9204, CVE-2026-6269, CVE-2026-96942026/6/12development
debian_linux dla-4627: Debian dla-4627 : kernel-wedge - security update2026/6/12development
debian_linux dla-4628: Debian dla-4628 : linux-base - security update2026/6/12development
alma_linux ALSA-2026:25221: ALSA-2026:25221: .NET 9.0 security update (High)CVE-2026-45591, CVE-2026-454912026/6/12development
alma_linux ALSA-2026:24381: ALSA-2026:24381: kernel security update (High)CVE-2026-46243, CVE-2026-31786, CVE-2026-316132026/6/12development
photon_os PHSA-2026-5.0-0869: Unknown PhotonOS Security UpdatedCVE-2023-24536, CVE-2024-45341, CVE-2026-39836, CVE-2026-27139, CVE-2026-33811, CVE-2022-41715, CVE-2026-39826, CVE-2026-25679, CVE-2023-24537, CVE-2024-24783, CVE-2023-24538, CVE-2022-41722, CVE-2026-27138, CVE-2022-41724, CVE-2022-41723, CVE-2024-24785, CVE-2026-39823, CVE-2022-41716, CVE-2024-34155, CVE-2023-24532, CVE-2023-39325, CVE-2022-41725, CVE-2022-41720, CVE-2022-2879, CVE-2026-27140, CVE-2026-39819, CVE-2025-0913, CVE-2023-24531, CVE-2022-32190, CVE-2023-24540, CVE-2025-22871, CVE-2025-22873, CVE-2024-45336, CVE-2023-45289, CVE-2022-27664, CVE-2026-42501, CVE-2026-27137, CVE-2025-22874, CVE-2026-39817, CVE-2026-32280, CVE-2022-41717, CVE-2026-32281, CVE-2022-2880, CVE-2023-44487, CVE-2026-32283, CVE-2026-33814, CVE-2023-24539, CVE-2023-45287, CVE-2026-42499, CVE-2026-33810, CVE-2023-45290, CVE-2026-39825, CVE-2025-4674, CVE-2023-24534, CVE-2023-29400, CVE-2026-27142, CVE-2026-32282, CVE-2025-22866, CVE-2025-4673, CVE-2026-398202026/6/12development
fedora FEDORA-2026-75fcc75b5f: kernel-7.0.12-101.fc43CVE-2025-102632026/6/12development
fedora FEDORA-2026-8b619eef6f: kernel-7.0.12-201.fc44CVE-2025-102632026/6/12development
fedora FEDORA-2026-228373a496: openssl-3.5.7-1.fc44CVE-2026-45445, CVE-2026-42768, CVE-2026-34181, CVE-2026-34183, CVE-2026-42764, CVE-2026-45447, CVE-2026-7383, CVE-2026-45446, CVE-2026-42769, CVE-2026-42770, CVE-2026-42766, CVE-2026-34180, CVE-2026-34182, CVE-2026-9076, CVE-2026-427672026/6/12development
fedora FEDORA-2026-e14ea170b6: vaultwarden-1.36.0-1.fc442026/6/12development
Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability (CVE-2026-7473)CVE-2026-74732026/6/12development
fedora FEDORA-2026-064873552d: vaultwarden-web-2026.4.1-1.fc43CVE-2026-27801, CVE-2026-27802, CVE-2026-278982026/6/12testing
fedora FEDORA-2026-111cf6d28f: vaultwarden-web-2026.4.1-1.fc442026/6/12testing
Multiple Vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM)CVE-2026-10727, CVE-2026-69732026/6/12development
fedora FEDORA-2026-264f9ef567: vaultwarden-1.36.0-1.fc43CVE-2026-25727, CVE-2026-26012, CVE-2026-255372026/6/12testing
debian_linux dla-4626: Debian dla-4626 : libinput-bin - security updateCVE-2026-50292, CVE-2022-12152026/6/12testing
miracle_linux AXSA:2026-782:01: AXSA:2026-782:01: postgresql-jdbc-42.2.14-4.el8_10CVE-2026-421982026/6/12testing
redhat RHSA-2026:25381: RHSA-2026:25381: flatpak security update (Important)CVE-2026-34078, CVE-2026-340792026/6/12testing
rocky_linux RLSA-2026:25110: RLSA-2026:25110: .NET 8.0 security update (Important)CVE-2026-45591, CVE-2026-454912026/6/12testing
rocky_linux RLSA-2026:25113: RLSA-2026:25113: .NET 9.0 security update (Important)CVE-2026-45591, CVE-2026-454912026/6/12testing
rocky_linux RLSA-2026:24984: RLSA-2026:24984: poppler security update (Important)CVE-2026-101182026/6/12testing
rocky_linux RLSA-2026:25114: RLSA-2026:25114: .NET 10.0 security update (Important)CVE-2026-45591, CVE-2026-454912026/6/12testing
miracle_linux AXSA:2026-781:13: AXSA:2026-781:13: thunderbird-140.11.0-1.el8_10.ML.1CVE-2026-8388, CVE-2026-8401, CVE-2026-83912026/6/12testing
PT - Dynamics 365CVE-2026-44819, CVE-2026-45456, CVE-2026-44820, CVE-2026-45643, CVE-2026-40371, CVE-2026-45455, CVE-2026-45459, CVE-2026-45463, CVE-2026-45485, CVE-2026-45645, CVE-2026-44824, CVE-2026-44823, CVE-2026-45486, CVE-2026-45457, CVE-2026-448182026/6/11development
Coverage request for CVE CVE-2026-20245CVE-2026-202452026/6/11development
Multiple Vulnerabilities in XenCVE-2026-42489, CVE-2026-42488, CVE-2026-42487, CVE-2026-424902026/6/11development
Multiple Vulnerabilities in VMware Spring FrameworkCVE-2026-41720, CVE-2026-41847, CVE-2026-41841, CVE-2026-41850, CVE-2026-41853, CVE-2026-41846, CVE-2026-41838, CVE-2026-41855, CVE-2026-41848, CVE-2026-41845, CVE-2026-33812, CVE-2026-41842, CVE-2026-41843, CVE-2026-41844, CVE-2026-41851, CVE-2026-41849, CVE-2026-41839, CVE-2026-41840, CVE-2026-41852, CVE-2026-418542026/6/11development
Multiple Vulnerabilities in MongoDBCVE-2026-9748, CVE-2026-9742, CVE-2026-9743, CVE-2026-9751, CVE-2026-9740, CVE-2026-9749, CVE-2026-9750, CVE-2026-9754, CVE-2026-9753, CVE-2026-9741, CVE-2026-9747, CVE-2026-9735, CVE-2026-9746, CVE-2026-97522026/6/11development
PT - Visual Studio Code & ExtensionsCVE-2026-40376, CVE-2026-48569, CVE-2026-45482, CVE-2026-47287, CVE-2026-47292, CVE-2026-47284, CVE-2026-472812026/6/11development
adobe apsb26-64: APSB26-64CVE-2026-47933, CVE-2026-47960, CVE-2026-47931, CVE-2026-47928, CVE-2026-47932, CVE-2026-47929, CVE-2026-479302026/6/11development
microsoft_dotnet 2026_Jun_09: dotnetCVE-2026-45491, CVE-2026-45591, CVE-2026-454902026/6/11development
Security Update for Python2026/6/11development
Multiple Vulnerabilities in VMware Products2026/6/11development
Multiple Vulnerabilities in SAP Products (June 2026)2026/6/11development
Security Update for SolarWinds Web Help Desk2026/6/11development
[Web App Scanning] PHP 8.5.x < 8.5.7 Multiple VulnerabilitiesCVE-2026-44928, CVE-2026-449272026/6/10testing
[Web App Scanning] Apache 2.4.x < 2.4.68 Multiple VulnerabilitiesCVE-2026-42535, CVE-2026-49975, CVE-2026-42536, CVE-2026-44185, CVE-2026-48913, CVE-2026-44186, CVE-2026-43951, CVE-2026-29170, CVE-2026-44631, CVE-2026-34356, CVE-2026-34355, CVE-2026-44119, CVE-2026-291672026/6/10testing
PT - June: Microsoft Exchange ServerCVE-2026-45504, CVE-2026-45503, CVE-2026-47631, CVE-2026-45502, CVE-2026-45583, CVE-2026-45501, CVE-2026-48579, CVE-2026-455002026/6/9development
SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability (CVE-2026-28318)CVE-2026-283182026/6/9development
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting Vulnerability (CVE-2025-66376)CVE-2025-663762026/6/8development
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability (CVE-2020-7796)CVE-2020-77962026/6/8development
[Web App Scanning] Mirasvit Cache Warmer for Magento < 1.11.12 Remote Code ExecutionCVE-2026-452472026/6/8testing
Security Update for TornadoCVE-2026-319582026/6/5testing