Plugins Pipeline

At Tenable, we use a multitude of approaches to deliver the best possible coverage to our customers and use a number of factors to prioritize vulnerabilities. Browse upcoming plugins that the Tenable Research team is prioritizing by CVE, detection status or keyword search. Please note that this page does not represent an exhaustive list of plugins that Tenable Research intends to provide coverage for nor for which plugin coverage is provided.

Plugins are categorized into one of the following detection statuses:

  • Development: Tenable Research team is actively working on providing a detection.
  • Testing: The plugin is in the production build & release pipeline.
  • Released: The plugin has been published on the displayed date.
TitleCVEsUpdatedStatus
Apache Airflow < 3.1.6 Log Output Credential ExposreCVE-2025-686752026/2/9development
redhat RHSA-2026:2328: RHSA-2026:2328: iperf3 security update (Moderate)CVE-2025-543492026/2/9development
redhat RHSA-2026:2299: RHSA-2026:2299: fence-agents security update (Important)CVE-2026-234902026/2/9development
redhat RHSA-2026:2330: RHSA-2026:2330: python3 security update (Moderate)CVE-2025-120842026/2/9development
redhat RHSA-2026:2352: RHSA-2026:2352: kernel security update (Moderate)CVE-2025-40322, CVE-2025-40294, CVE-2024-54456, CVE-2025-68349, CVE-2025-38568, CVE-2025-21786, CVE-2025-21647, CVE-2025-38022, CVE-2025-38051, CVE-2025-217912026/2/9development
redhat RHSA-2026:2282: RHSA-2026:2282: kernel security update (Moderate)CVE-2025-40322, CVE-2025-38415, CVE-2025-38403, CVE-2025-38730, CVE-2025-40304, CVE-2025-39933, CVE-2025-68811, CVE-2025-401332026/2/9development
redhat RHSA-2026:2320: RHSA-2026:2320: golang security update (Important)CVE-2025-617292026/2/9development
redhat RHSA-2026:2303: RHSA-2026:2303: fence-agents security update (Important)CVE-2026-234902026/2/9development
redhat RHSA-2026:2271: RHSA-2026:2271: firefox security update (Important)CVE-2026-0882, CVE-2026-0886, CVE-2026-0887, CVE-2026-0877, CVE-2026-0883, CVE-2025-14327, CVE-2026-0885, CVE-2026-0891, CVE-2026-0878, CVE-2026-0879, CVE-2026-0884, CVE-2026-0890, CVE-2026-08802026/2/9development
centos_stream kernel-5.14.0-677.el9: kernel-5.14.0-677.el9CVE-2025-398402026/2/9development
alma_linux ALSA-2026:1843: ALSA-2026:1843: nodejs22 security update (High)CVE-2025-55132, CVE-2025-59465, CVE-2026-21637, CVE-2025-55131, CVE-2025-59466, CVE-2025-551302026/2/9development
alma_linux ALSA-2026:2124: ALSA-2026:2124: osbuild-composer security update (High)CVE-2025-617292026/2/9development
alma_linux ALSA-2026:2215: ALSA-2026:2215: libsoup security update (High)CVE-2026-0719, CVE-2026-17612026/2/9development
alma_linux ALSA-2026:1831: ALSA-2026:1831: qemu-kvm security update (Medium)CVE-2025-112342026/2/9development
alma_linux ALSA-2026:1842: ALSA-2026:1842: nodejs24 security update (High)CVE-2025-55132, CVE-2025-59465, CVE-2026-21637, CVE-2025-55131, CVE-2025-59466, CVE-2025-551302026/2/9development
alma_linux ALSA-2026:2182: ALSA-2026:2182: libsoup3 security update (High)CVE-2026-0719, CVE-2026-17612026/2/9development
alma_linux ALSA-2026:1837: ALSA-2026:1837: osbuild-composer security update (Medium)CVE-2025-581832026/2/9development
alma_linux ALSA-2026:2264: ALSA-2026:2264: kernel security update (Medium)CVE-2025-40170, CVE-2025-38403, CVE-2025-40135, CVE-2025-68349, CVE-2025-40269, CVE-2025-40158, CVE-2022-50673, CVE-2026-229982026/2/9development
alma_linux ALSA-2026:2286: ALSA-2026:2286: thunderbird security update (High)CVE-2026-0882, CVE-2026-0886, CVE-2026-0887, CVE-2026-0877, CVE-2026-0883, CVE-2025-14327, CVE-2026-0885, CVE-2026-0891, CVE-2026-0878, CVE-2026-0879, CVE-2026-0884, CVE-2026-0890, CVE-2026-08802026/2/9development
alma_linux ALSA-2026:2271: ALSA-2026:2271: firefox security update (High)CVE-2026-0882, CVE-2026-0886, CVE-2026-0887, CVE-2026-0877, CVE-2026-0883, CVE-2025-14327, CVE-2026-0885, CVE-2026-0891, CVE-2026-0878, CVE-2026-0879, CVE-2026-0884, CVE-2026-0890, CVE-2026-08802026/2/9development
debian_linux dla-4474: Debian dla-4474 : librlottie-dev - security updateCVE-2025-53074, CVE-2025-0634, CVE-2025-530752026/2/9development
JetBrains YouTrack < 2025.3.119033 Information DisclosureCVE-2026-258462026/2/9testing
OpenClaw < 2026.1.20 Command InjectionCVE-2026-255932026/2/9development
OpenClaw < 2026.1.30 Arbitrary File ReadCVE-2026-254752026/2/9development
[Web App Scanning] Mura CMS < 10.0.580 Authentication BypassCVE-2022-470032026/2/9testing
BeyondTrust Remote Support <= 25.3.1 and Privileged Remote Access (PRA) <= 24.3.4 Pre-Authentication Remote Code ExecutionCVE-2026-17312026/2/9development
Gogs <= 0.13.3 Multiple VulnerabilitiesCVE-2026-23633, CVE-2025-65852, CVE-2026-23632, CVE-2026-22592, CVE-2025-64111, CVE-2026-24135, CVE-2025-641752026/2/9development
[Web App Scanning] OpenCMS Multiple VulnerabilitiesCVE-2024-41446, CVE-2024-5520, CVE-2024-41447, CVE-2023-6379, CVE-2023-6380, CVE-2023-37602, CVE-2024-42699, CVE-2024-55212026/2/5testing
[Web App Scanning] Roundcube Webmail Multiple VulnerabilitiesCVE-2025-68461, CVE-2025-68460, CVE-2025-491132026/2/5testing
Multiple Vulnerabilities in Notepad++ (CVE-2025-56383)CVE-2025-15556, CVE-2025-563832026/2/5development
Security Update for SymfonyCVE-2026-247392026/2/4development
Sangoma FreePBX Improper Authentication Vulnerability (CVE-2019-19006)CVE-2019-190062026/2/4development
[Web App Scanning] Apache Configuration File Detected2026/2/4testing
[Web App Scanning] Ansible Configuration File Detected2026/2/4testing
[Web App Scanning] Apache Airflow Configuration File Detected2026/2/4testing
Brocade Fabric OS Multiple Vulnerabilities Feb 2026CVE-2025-58379, CVE-2025-58381, CVE-2026-0383, CVE-2025-58382, CVE-2025-58383, CVE-2025-9711, CVE-2025-583802026/2/3development
cisco cisco-sa-iec6400-Pem5uQ7v: Cisco IEC6400 Wireless Backhaul Edge Compute Software SSH Denial of Service VulnerabilityCVE-2026-200802026/2/3development
Multiple Vulnerabilities in SolarWinds Web Help DeskCVE-2025-40551, CVE-2025-40537, CVE-2025-40552, CVE-2025-405362026/1/30development
Multiple Vulnerabilities in Alteryx ServerCVE-2025-28243, CVE-2025-28245, CVE-2023-269612026/1/30development
Security Update for PyBindCVE-2024-318842026/1/29development
Security Update for WiresharkCVE-2026-09622026/1/22development
cisco cisco-sa-ucce-pcce-xss-2JVyg3uD: Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting VulnerabilitiesCVE-2026-20055, CVE-2026-201092026/1/22development
oracle_linux ELSA-2026-0936: ELSA-2026-0936: glib2 security update (MODERATE)CVE-2025-136012026/1/22development
oracle_linux ELSA-2026-0975: ELSA-2026-0975: glib2 security update (MODERATE)CVE-2025-136012026/1/22development
oracle_linux ELSA-2026-0930: ELSA-2026-0930: pcs security update (MODERATE)CVE-2025-67726, CVE-2025-677252026/1/22development
oracle CPUJan2026: Business Intelligence Enterprise EditionCVE-2025-8885, CVE-2025-26333, CVE-2025-66418, CVE-2024-57699, CVE-2025-48734, CVE-2025-9230, CVE-2025-59419, CVE-2025-41249, CVE-2025-55039, CVE-2026-21976, CVE-2023-6378, CVE-2021-23926, CVE-2025-48924, CVE-2025-68161, CVE-2024-35195, CVE-2025-31672, CVE-2025-52999, CVE-2024-47554, CVE-2025-48976, CVE-2022-45047, CVE-2025-59250, CVE-2025-587542026/1/20development
oracle CPUJan2026: MySQL Server 8.4.8CVE-2025-6965, CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Cluster 8.4.8CVE-2025-6965, CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Cluster 8.0.45CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development
oracle CPUJan2026: MySQL Server 8.0.45CVE-2026-21941, CVE-2026-21964, CVE-2026-21937, CVE-2026-21948, CVE-2025-9230, CVE-2026-21968, CVE-2026-219362026/1/20development