CVE-2026-18667: Tenable, Inc Sensor Proxy

Critical severity, CVSS 9.6. EPSS: 0.7% chance of exploitation in the next 30 days.

A vulnerability in Tenable Sensor Proxy allows a remote attacker to execute code with elevated privileges by inducing an operator to connect the sensor to an attacker-controlled host.

Affected products

Published 2026-08-03. Last modified 2026-08-18.