CVE-2026-19636: Tenable Security Center

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue was identified in which CSRF tokens were generated using a predictable method, potentially reducing their effectiveness as a security control. This has been addressed by improving the randomness and entropy of token generation.

Affected products

  • Tenable Security Center: before 6.9.0 (fixed in 6.9.0)

Published 2026-08-14. Last modified 2026-08-19.