Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsPluginsUpdatedStatus
oracle_linux ELSA-2026-6445: ELSA-2026-6445: libpng12 security update (IMPORTANT)CVE-2026-256463048672026/4/5released
oracle_linux ELSA-2026-6300: ELSA-2026-6300: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free security update (IMPORTANT)CVE-2026-3085, CVE-2026-2921, CVE-2026-3083, CVE-2026-2923, CVE-2026-3082, CVE-2026-2922, CVE-2026-29203048682026/4/5released
miracle_linux AXSA:2026-401:04: AXSA:2026-401:04: grafana-pcp-5.1.1-13.el9_7CVE-2026-256793048712026/4/5released
miracle_linux AXSA:2026-399:07: AXSA:2026-399:07: grafana-10.2.6-19.el9_7CVE-2026-256793048722026/4/5released
miracle_linux AXSA:2026-397:10: AXSA:2026-397:10: freerdp-2.11.7-1.el9_7.5CVE-2026-24681, CVE-2026-22856, CVE-2026-24683, CVE-2026-22852, CVE-2026-22854, CVE-2026-24676, CVE-2026-24679, CVE-2026-24684, CVE-2026-24491, CVE-2026-23732, CVE-2026-23948, CVE-2026-31806, CVE-2026-246753048702026/4/5released
miracle_linux AXSA:2026-396:01: AXSA:2026-396:01: rsync-3.2.5-3.el9_7.2CVE-2025-101583048692026/4/5released
debian_linux dsa-6192: Debian dsa-6192 : chromium - security updateCVE-2026-5279, CVE-2026-5286, CVE-2026-5290, CVE-2026-5292, CVE-2026-5288, CVE-2026-5276, CVE-2026-5283, CVE-2026-5291, CVE-2026-5289, CVE-2026-5285, CVE-2026-5278, CVE-2026-5281, CVE-2026-5274, CVE-2026-5280, CVE-2026-5282, CVE-2026-5275, CVE-2026-5273, CVE-2026-5284, CVE-2026-5272, CVE-2026-5277, CVE-2026-52873048662026/4/5released
suse_linux SUSE-SU-openSUSE-FU-2026:20453-1: SUSE openSUSE 16 : Feature update for himmelblau (Important) (SUSE-SU-openSUSE-FU-2026:20453-1)CVE-2026-25727, CVE-2025-54882, CVE-2026-31979, CVE-2025-581603048552026/4/4released
suse_linux SUSE-SU-2026:1177-1: SUSE SLED15 / SLES15 / openSUSE 15 : Security update for tar (Important) (SUSE-SU-2026:1177-1)CVE-2025-455823048562026/4/4released
suse_linux SUSE-SU-2026:1174-1: SUSE SLES12 : Security update for LibVNCServer (Important) (SUSE-SU-2026:1174-1)CVE-2026-32854, CVE-2026-328533048532026/4/4released
suse_linux SUSE-SU-2026:1173-1: SUSE SLED15 / SLES15 / openSUSE 15 : Security update for LibVNCServer (Important) (SUSE-SU-2026:1173-1)CVE-2026-32854, CVE-2026-328533048542026/4/4released
suse_linux SUSE-SU-2026:1171-1: SUSE SLED15 / SLES15 : Security update for python-tornado (Important) (SUSE-SU-2026:1171-1)CVE-2026-319583048502026/4/4released
suse_linux SUSE-SU-2026:1170-1: SUSE SLES12 : Security update for perl-Crypt-URandom (Important) (SUSE-SU-2026:1170-1)CVE-2026-24743048522026/4/4released
suse_linux SUSE-SU-2026:1169-1: SUSE SLED15 / SLES15 : Security update for wireshark (Important) (SUSE-SU-2026:1169-1)CVE-2025-13499, CVE-2026-3203, CVE-2025-1492, CVE-2025-9817, CVE-2026-3201, CVE-2025-5601, CVE-2025-13946, CVE-2024-9780, CVE-2026-0961, CVE-2024-9781, CVE-2026-0962, CVE-2026-3202, CVE-2026-0959, CVE-2024-11595, CVE-2025-13674, CVE-2026-0960, CVE-2025-13945, CVE-2024-115963048512026/4/4released
suse_linux SUSE-SU-2026:1166-1: SUSE SLES15 / openSUSE 15 : Security update for expat (Important) (SUSE-SU-2026:1166-1)CVE-2026-32778, CVE-2026-32776, CVE-2026-327773048572026/4/4released
opensuse openSUSE-SU-2026:20456-1: openSUSE 16 : Security update for tinyproxy (Important) (openSUSE-SU-2026:20456-1)CVE-2026-39453048632026/4/4released
opensuse openSUSE-SU-2026:20452-1: openSUSE 16 : Security update for kea (Important) (openSUSE-SU-2026:20452-1)CVE-2026-3608, CVE-2025-112323048582026/4/4released
opensuse openSUSE-SU-2026:20451-1: openSUSE 16 : Security update for gnome-online-accounts, gvfs (Important) (openSUSE-SU-2026:20451-1)CVE-2026-28296, CVE-2026-282953048642026/4/4released
opensuse openSUSE-SU-2026:20449-1: openSUSE 16 : Security update for postgresql13 (Important) (openSUSE-SU-2026:20449-1)CVE-2025-12817, CVE-2025-128183048602026/4/4released
opensuse openSUSE-SU-2026:20448-1: openSUSE 16 : Security update for expat (Important) (openSUSE-SU-2026:20448-1)CVE-2026-32778, CVE-2026-32776, CVE-2026-327773048652026/4/4released
opensuse openSUSE-SU-2026:20447-1: openSUSE 16 : Security update for postgresql16 (Important) (openSUSE-SU-2026:20447-1)CVE-2026-2003, CVE-2026-2005, CVE-2026-2004, CVE-2026-20063048592026/4/4released
opensuse openSUSE-SU-2026:20446-1: openSUSE 16 : Security update for gnutls (Moderate) (openSUSE-SU-2026:20446-1)CVE-2025-9820, CVE-2025-148313048622026/4/4released
opensuse openSUSE-SU-2026:20444-1: openSUSE 16 : Security update for tomcat10 (Important) (openSUSE-SU-2026:20444-1)CVE-2025-61795, CVE-2025-55754, CVE-2026-24734, CVE-2025-66614, CVE-2025-55752, CVE-2026-247333048612026/4/4released
miracle_linux AXSA:2026-395:06: AXSA:2026-395:06: thunderbird-140.9.0-1.el9_7.ML.1CVE-2026-4702, CVE-2026-4688, CVE-2026-4687, CVE-2026-4696, CVE-2026-4694, CVE-2026-4371, CVE-2026-4684, CVE-2026-4700, CVE-2026-4691, CVE-2026-4704, CVE-2026-4686, CVE-2026-4697, CVE-2026-3889, CVE-2026-4689, CVE-2026-4699, CVE-2026-4701, CVE-2026-4693, CVE-2026-4695, CVE-2026-4685, CVE-2026-4690, CVE-2026-4692, CVE-2026-46983048472026/4/4released
miracle_linux AXSA:2026-393:08: AXSA:2026-393:08: python3.11-3.11.13-6.el8_10CVE-2026-45193048462026/4/4released
fedora FEDORA-2026-a9c2a486a6: openbao-2.5.2-1.fc43CVE-2026-33757, CVE-2026-337583048492026/4/4released
fedora FEDORA-2026-a6efefa854: bind9-next-9.21.20-1.fc43CVE-2026-3591, CVE-2026-1519, CVE-2026-3104, CVE-2026-31193048482026/4/4released
fedora FEDORA-2026-563f85e690: mupdf-1.27.1-10.fc45CVE-2026-33083048422026/4/4released
photon_os PHSA-2026-4.0-0991: Unknown PhotonOS Security UpdatedCVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2026-3479, CVE-2026-21968, CVE-2026-21936304844, 3048452026/4/4released
photon_os PHSA-2026-4.0-0984: Unknown PhotonOS Security UpdatedCVE-2025-0395, CVE-2025-15281, CVE-2026-0915, CVE-2026-0861, CVE-2025-8058, CVE-2026-260183048432026/4/4released
Multiple Vulnerabilities in OpenEXR3048142026/4/4released
microsoft_edge 2026_Apr_01_146.0.3856.97: Advisory for 146.0.3856.97CVE-2026-5279, CVE-2026-5286, CVE-2026-5290, CVE-2026-5292, CVE-2026-5276, CVE-2026-5283, CVE-2026-5291, CVE-2026-5289, CVE-2026-5285, CVE-2026-5281, CVE-2026-5274, CVE-2026-5280, CVE-2026-5275, CVE-2026-5273, CVE-2026-4676, CVE-2026-5284, CVE-2026-5272, CVE-2026-5277, CVE-2026-52873048152026/4/4released
LangChain Core < 1.2.22 Path Traversal (CVE-2026-34070)CVE-2026-34070304816, 3048172026/4/4released
debian_linux dla-4521: Debian dla-4521 : libpng-dev - security updateCVE-2026-33416, CVE-2026-336363048182026/4/4released
cisco cisco-sa-nd-cbid-5YqkOSHu: Cisco Nexus Dashboard Configuration Backup REST API Unauthorized Access VulnerabilityCVE-2026-200423048102026/4/4released
cisco cisco-sa-asa-ftd-ios-dos-kPEpQGGK: Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, and Secure Firewall Threat Defense Software IKEv2 Denial of Service VulnerabilityCVE-2026-20012304804, 304805, 304812, 3048132026/4/4released
Multiple Vulnerabilities in aioHTTPCVE-2026-34516, CVE-2026-22815, CVE-2026-34514, CVE-2026-34519, CVE-2026-34513, CVE-2026-34525, CVE-2026-34520, CVE-2026-345153048112026/4/4released
Security Update for VIMCVE-2026-349823048072026/4/3released
redhat RHSA-2026:6540: RHSA-2026:6540: vim security update (Important)CVE-2026-28417, CVE-2026-33412, CVE-2026-28421, CVE-2026-257493047942026/4/3released
redhat RHSA-2026:6539: RHSA-2026:6539: vim security update (Important)CVE-2026-28417, CVE-2026-33412, CVE-2026-28421, CVE-2026-257493047932026/4/3released
redhat RHSA-2026:6499: RHSA-2026:6499: libxslt security update (Moderate)CVE-2023-404033047952026/4/3released
oracle_linux ELSA-2026-6473: ELSA-2026-6473: python3 security update (IMPORTANT)CVE-2026-45193047972026/4/3released
oracle_linux ELSA-2026-6463: ELSA-2026-6463: openssh security update (IMPORTANT)CVE-2026-34973047992026/4/3released
oracle_linux ELSA-2026-6461: ELSA-2026-6461: openssh security update (IMPORTANT)CVE-2026-34973048022026/4/3released
oracle_linux ELSA-2026-6439: ELSA-2026-6439: libpng15 security update (IMPORTANT)CVE-2026-256463048012026/4/3released
oracle_linux ELSA-2026-6436: ELSA-2026-6436: rsync security update (MODERATE)CVE-2025-101583047962026/4/3released
oracle_linux ELSA-2026-6435: ELSA-2026-6435: mariadb:10.11 security update (MODERATE)CVE-2023-52969, CVE-2025-30722, CVE-2023-52970, CVE-2025-30693, CVE-2026-21968, CVE-2025-21490, CVE-2023-529713047982026/4/3released
oracle_linux ELSA-2026-6391: ELSA-2026-6391: mysql:8.4 security update (MODERATE)CVE-2026-21964, CVE-2026-21941, CVE-2026-21937, CVE-2026-21948, CVE-2026-21968, CVE-2026-219363048002026/4/3released
Multiple Vulnerabilities in Docker MobyCVE-2026-33747, CVE-2026-33997, CVE-2026-33748, CVE-2026-340403048032026/4/3released
cisco cisco-sa-cimc-auth-bypass-AgG2BxTn: Cisco Integrated Management Controller Authentication Bypass VulnerabilityCVE-2026-200933048082026/4/3released