CVE-2026-19631: Tenable Security Center

Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.

A SQL injection vulnerability exists in Security Center that could allow an authenticated administrator to execute arbitrary SQL queries, potentially resulting in unauthorized access to sensitive data, including credentials.

Affected products

  • Tenable Security Center: before 6.9.0 (fixed in 6.9.0)

Published 2026-08-14. Last modified 2026-08-19.