CVE-2026-15265
Severity CVSS v4.0:
CRITICAL
Type:
CWE-22
Path Traversal
Publication date:
14/07/2026
Last modified:
15/07/2026
Description
A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitrary files outside the intended plugin directory, potentially leading to remote code execution.
Impact
Base Score 4.0
9.40
Severity 4.0
CRITICAL
Base Score 3.x
9.10
Severity 3.x
CRITICAL



