CVE-2026-19681: Tenable Security Center
Critical severity, CVSS 9.9. EPSS: 9.9% chance of exploitation in the next 30 days.
An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.
Affected products
- Tenable Security Center: before 6.9.0 (fixed in 6.9.0)
Published 2026-08-14. Last modified 2026-08-19.