Known vulnerabilities in SecurityCenter

Software CPE: cpe:2.3:a:tenable_network_security:securitycenter:*:*:*:*:*:*:*:*
Total vulnerabilities: 133
Public exploits: 14
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SecurityCenter SecurityCenter is affected by 133 known vulnerabilities: 2 critical, 12 high, 78 medium, 41 low Critical High Medium Low

Vulnerabilities (133)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131454 - Missing Authorization
CVE-2026-6472
CWE-862 Low
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 24 more
#VU131455 - Integer overflow
CVE-2026-6473
CWE-190 Low
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 44 more
#VU131456 - Use of Externally-Controlled Format String
CVE-2026-6474
CWE-134 Low
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 23 more
#VU131457 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-6475
CWE-59 Medium
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 40 more
#VU131459 - Stack-based buffer overflow
CVE-2026-6477
CWE-121 High
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 43 more
#VU131460 - Information Exposure Through Timing Discrepancy
CVE-2026-6478
CWE-208 Medium
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 46 more
#VU131461 - Uncontrolled Recursion
CVE-2026-6479
CWE-674 Medium
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 24 more
#VU131463 - Stack-based buffer overflow
CVE-2026-6637
CWE-121 Medium
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB20260514109
and 23 more
#VU131464 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-6638
CWE-89 Low
No
No
SC202607.1 14.05.2026 SB20260514106
SB20260514108
SB2026051852
and 10 more
#VU130909 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-6735
CWE-79 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 18 more
#VU130911 - Out-of-bounds read
CVE-2026-6104
CWE-125 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB2026051416
SB2026051523
and 2 more
#VU130912 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2025-14179
CWE-89 High
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 18 more
#VU130913 - Use After Free
CVE-2026-6722
CWE-416 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 16 more
#VU130914 - Use After Free
CVE-2026-7261
CWE-416 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 16 more
#VU130915 - NULL Pointer Dereference
CVE-2026-7262
CWE-476 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 18 more
#VU130917 - Type conversion
CVE-2026-7258
CWE-704 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 16 more
#VU130918 - Integer overflow
CVE-2026-42371
CWE-190 Medium
No
No
SC202607.1 10.05.2026 SB2026051001
SB2026051002
SB2026051003
and 8 more
#VU130203 - Heap-based Buffer Overflow
CVE-2026-25243
CWE-122 Medium
No
No
SC202607.1 05.05.2026 SB20260505114
SB20260509119
SB20260509120
and 22 more
#VU130202 - Use After Free
CVE-2026-23479
CWE-416 Medium
No
No
SC202607.1 05.05.2026 SB20260505114
SB20260509119
SB20260509120
and 12 more
#VU130201 - Use After Free
CVE-2026-23631
CWE-416 Medium
No
No
SC202607.1 05.05.2026 SB20260505114
SB20260509119
SB20260509120
and 14 more


Showing elements 1 - 20 out of 133