CVE-2025-26494: Tableau Server

High severity, CVSS 7.7. EPSS: 0.6% chance of exploitation in the next 30 days.

Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server allows Authentication Bypass.This issue affects Tableau Server: from 2023.3 through 2023.3.5.

Affected products

  • Tableau Tableau Server: from 2023.3, up to and including 2023.3.5

Published 2025-02-11. Last modified 2026-06-17.