CVE-2026-19682: Tenable Security Center
Critical severity, CVSS 9.9. EPSS: 2.8% chance of exploitation in the next 30 days.
A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker could exploit this issue to execute arbitrary commands on the underlying operating system with the privileges of the service account.
Affected products
- Tenable Security Center: before 6.9.0 (fixed in 6.9.0)
Published 2026-08-14. Last modified 2026-08-19.