Known vulnerabilities in Tableau Server

Vendor: Tableau
Software CPE: cpe:2.3:a:tableau:tableau_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 7
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Tableau Server Tableau Server is affected by 7 known vulnerabilities: 2 medium, 5 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU103901 - Server-Side Request Forgery (SSRF)
CVE-2025-26491
CWE-918 Medium
No
No
2021.3.25, 2021.4.20, 2022.1.16, 2022.3.8, 2023.1.4 12.02.2025 SB2025021253
SB2025021254
#VU103900 - Information Exposure Through Log Files
CVE-2025-26490
CWE-532 Low
No
No
2020.4.19, 2021.1.16, 2021.2.14, 2021.3.13, 2021.4.8, 2022.1.3 12.02.2025 SB2025021252
SB2025021254
#VU103898 - Improper Access Control
CVE-2022-22127
CWE-284 Low
No
No
2020.4.17, 2021.1.14, 2021.2.11, 2021.3.10, 2021.4.5 12.02.2025 SB2025021250
SB2025021254
#VU7308 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CWE-89 Low
No
No
- 04.07.2017 SB2017070407
#VU7303 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
- 04.07.2017 SB2017070407
#VU7302 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
- 04.07.2017 SB2017070407
#VU42092 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2014-1204
CWE-89 Medium
Available
No
- 31.01.2014 SB2014013102