CVE-2026-33694: Tenable Nessus

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code with elevated SYSTEM privileges.

Affected products

  • Tenable Nessus: up to and including 10.11.3
  • Tenable Nessus Agent: up to and including 11.1.2

Published 2026-04-23. Last modified 2026-08-21.