As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 333273 plugins, covering 122045 CVE IDs and 30933 Bugtraq IDs.
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 318835 | Oracle REST Data Services (ORDS) Detection (Linux / Unix) | Nessus | Misc. | info |
| 318834 | Oracle REST Data Services (CSPU May 2026) | Nessus | Misc. | critical |
| 318833 | RockyLinux 10 : gnutls (RLSA-2026:20613) | Nessus | Rocky Linux Local Security Checks | critical |
| 318832 | RockyLinux 10 : kernel (RLSA-2026:19569) | Nessus | Rocky Linux Local Security Checks | high |
| 318831 | RockyLinux 10 : delve (RLSA-2026:23102) | Nessus | Rocky Linux Local Security Checks | high |
| 318830 | RockyLinux 10 : expat (RLSA-2026:22715) | Nessus | Rocky Linux Local Security Checks | high |
| 318829 | RockyLinux 9 : libexif (RLSA-2026:22553) | Nessus | Rocky Linux Local Security Checks | high |
| 318828 | RockyLinux 10 : vim (RLSA-2026:22711) | Nessus | Rocky Linux Local Security Checks | high |
| 318827 | RockyLinux 10 : thunderbird (RLSA-2026:22325) | Nessus | Rocky Linux Local Security Checks | critical |
| 318826 | RockyLinux 10 : .NET 10.0 (RLSA-2026:22145) | Nessus | Rocky Linux Local Security Checks | high |
| 318825 | RockyLinux 10 : go-fdo-client and go-fdo-server (RLSA-2026:22141) | Nessus | Rocky Linux Local Security Checks | critical |
| 318824 | RockyLinux 9 : mod_http2 (RLSA-2026:22551) | Nessus | Rocky Linux Local Security Checks | high |
| 318823 | RockyLinux 10 : mod_http2 (RLSA-2026:22528) | Nessus | Rocky Linux Local Security Checks | high |
| 318822 | RockyLinux 10 : image-builder (RLSA-2026:22937) | Nessus | Rocky Linux Local Security Checks | critical |
| 318821 | RockyLinux 10 : php8.4 (RLSA-2026:22649) | Nessus | Rocky Linux Local Security Checks | high |
| 318820 | RockyLinux 10 : openssl (RLSA-2026:22314) | Nessus | Rocky Linux Local Security Checks | high |
| 318819 | RockyLinux 9 : vim (RLSA-2026:22717) | Nessus | Rocky Linux Local Security Checks | high |
| 318818 | RockyLinux 10 : libexif (RLSA-2026:22529) | Nessus | Rocky Linux Local Security Checks | high |
| 318817 | RockyLinux 10 : osbuild-composer (RLSA-2026:22450) | Nessus | Rocky Linux Local Security Checks | critical |
| 318816 | RockyLinux 10 : libtiff (RLSA-2026:19150) | Nessus | Rocky Linux Local Security Checks | high |
| 318815 | RockyLinux 9 : image-builder (RLSA-2026:23228) | Nessus | Rocky Linux Local Security Checks | critical |
| 318814 | RockyLinux 9 : expat (RLSA-2026:23230) | Nessus | Rocky Linux Local Security Checks | high |
| 318813 | RockyLinux 10 : giflib (RLSA-2026:19154) | Nessus | Rocky Linux Local Security Checks | medium |
| 318812 | Linux Distros Unpatched Vulnerability : CVE-2026-50265 | Nessus | Misc. | high |
| 318811 | Linux Distros Unpatched Vulnerability : CVE-2026-40898 | Nessus | Misc. | medium |
| 318810 | Linux Distros Unpatched Vulnerability : CVE-2026-41178 | Nessus | Misc. | medium |
| 318809 | Linux Distros Unpatched Vulnerability : CVE-2026-45287 | Nessus | Misc. | low |
| 318808 | Xen: Xenstored DoS by unprivileged domain (XSA-481) | Nessus | Misc. | high |
| 318807 | Xen: Use after free of paging structures in EPT (XSA-480) | Nessus | Misc. | high |
| 318806 | Oracle E-Business Suite (May 2026 CSPU) | Nessus | Misc. | critical |
| 318805 | Arista Networks EOS Security Update (SA0140) | Nessus | Misc. | medium |
| 318804 | Oracle Database Server (May 2026 CSPU) | Nessus | Databases | critical |
| 318803 | Node.js Module axios 1.x < 1.16.0 Prototype Pollution Proxy MITM (CVE-2026-44494) | Nessus | Misc. | high |
| 318802 | Node.js Module axios 0.19.x < 0.31.1 / 1.x < 1.15.2 Prototype Pollution Credential Theft (CVE-2026-44495) | Nessus | Misc. | high |
| 318801 | Node.js Module axios < 0.32.0 / 1.x < 1.16.0 NO_PROXY Bypass (SSRF) | Nessus | Misc. | high |
| 318800 | Atlassian Jira Service Management Data Center and Server 5.15.2 < 10.3.20 / 10.4.x < 11.3.5 (JSDSERVER-16574) | Nessus | Misc. | high |
| 318799 | Security Update for Microsoft Visual Studio Code Nx-Console Extension (CVE-2026-48027) | Nessus | Misc. | critical |
| 318798 | Node.js Module node-tar < 7.5.11 Arbitrary File Overwrite | Nessus | Misc. | medium |
| 318797 | Node.js Module node-tar < 7.5.10 Arbitrary File Overwrite | Nessus | Misc. | high |
| 318796 | Debian dla-4615 : exim4 - security update | Nessus | Debian Local Security Checks | medium |
| 318795 | Debian dla-4616 : haveged - security update | Nessus | Debian Local Security Checks | high |
| 318794 | Fedora 45 : nasm (2026-c346e5cd24) | Nessus | Fedora Local Security Checks | medium |
| 318793 | MiracleLinux 8 : dotnet10.0-10.0.108-1.el8_10 (AXSA:2026-759:10) | Nessus | Miracle Linux Local Security Checks | high |
| 318792 | Symfony and Symfony HTML Sanitizer Component 6.1.x < 6.4.40 / 7.0.x < 7.4.12 / 8.0.x 8.0.12 Multiple Vulnerabilities | Nessus | Misc. | medium |
| 318791 | Symfony and Multiple Symfony Components < 5.4.52 / 6.x < 6.4.40 / 7.x < 7.4.12 / 8.x < 8.0.12 Multiple Vulnerabilities | Nessus | Misc. | high |
| 318790 | 7-Zip >= 9.34 < 26.01 WIM / Ar SYMDEF OOB Read (GHSL-2026-115_GHSL-2026-122) | Nessus | Windows | medium |
| 318789 | 7-Zip >= 9.18 < 26.01 SquashFS BlockToNode OOB Read (GHSL-2026-115_GHSL-2026-122) | Nessus | Windows | medium |
| 318788 | 7-Zip >= 9.18 < 26.01 SquashFS Integer Overflow (GHSL-2026-115_GHSL-2026-122) | Nessus | Windows | medium |
| 318787 | 7-Zip >= 9.11 < 26.01 UDF OOB Read (GHSL-2026-115_GHSL-2026-122) | Nessus | Windows | high |
| 318786 | 7-Zip >= 9.21 < 26.01 UEFI Multiple Vulnerabilities (GHSL-2026-115_GHSL-2026-122) | Nessus | Windows | medium |
| ID | Name | Product | Family | Severity |
|---|---|---|---|---|
| 96534 | Firefox Browser Extension Enumeration | Nessus | Windows | info |
| 96533 | Chrome Browser Extension Enumeration | Nessus | Windows | info |
| 71644 | Oracle Database Patch Info (credentialed check) | Nessus | Databases | info |
| 70177 | Oracle E-Business Version and Patch Info | Nessus | Misc. | info |
| 505321 | Tripp Lite Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 505320 | Tripp Lite Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 505318 | Eaton Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 505317 | Eaton End-of-Life Devices Detection | Tenable OT Security | Tenable.ot | medium |
| 505316 | Eaton Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 505229 | Moxa Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 503282 | Axis Communications Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 503281 | Axis Communications End-of-Life Devices Detection | Tenable OT Security | Tenable.ot | medium |
| 503280 | Axis Communications Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 503278 | Siemens End-of-Life Devices Detection | Tenable OT Security | Tenable.ot | medium |
| 503277 | Siemens Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 503276 | Siemens Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 503147 | Schneider Electric End-of-Life Devices Detection | Tenable OT Security | Tenable.ot | medium |
| 503146 | Schneider Electric Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 503145 | Schneider Electric Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 502810 | Rockwell Automation End-of-Life Devices Detection | Tenable OT Security | Tenable.ot | medium |
| 502804 | Rockwell Automation Discontinued Devices Detection | Tenable OT Security | Tenable.ot | high |
| 502803 | Rockwell Automation Active Devices Detection | Tenable OT Security | Tenable.ot | info |
| 45624 | Oracle RDBMS Host Name and Patch Info | Nessus | Databases | info |
| 318725 | Kibana 8.x < 8.19.16 DoS (ESA-2026-39) | Nessus | CGI abuses | medium |
| 318724 | Kibana 8.x < 8.19.16 / 9.0.x < 9.3.5 / 9.4.x < 9.4.2 Multiple Vulnerabilities (ESA-2026-35 / ESA-2026-38) | Nessus | CGI abuses | medium |
| 318723 | Kibana 8.x < 8.19.16 / 9.0.x < 9.3.5 / 9.4.x < 9.4.1 DoS (ESA-2026-32) | Nessus | CGI abuses | medium |
| 318722 | Kibana 9.3.x < 9.3.3 SSRF (ESA-2026-40) | Nessus | CGI abuses | high |
| 318721 | Kibana 8.x < 8.19.16 / 9.0.x < 9.3.5 Multiple Vulnerabilities (ESA-2026-30 / ESA-2026-33 / ESA-2026-34 / ESA-2026-36) | Nessus | CGI abuses | high |
| 318719 | Linux Distros Unpatched Vulnerability : CVE-2026-46263 | Nessus | Misc. | medium |
| 318718 | Linux Distros Unpatched Vulnerability : CVE-2026-46258 | Nessus | Misc. | medium |
| 318717 | Linux Distros Unpatched Vulnerability : CVE-2026-46246 | Nessus | Misc. | medium |
| 318716 | Linux Distros Unpatched Vulnerability : CVE-2026-46250 | Nessus | Misc. | medium |
| 318715 | Linux Distros Unpatched Vulnerability : CVE-2026-46261 | Nessus | Misc. | medium |
| 318714 | Linux Distros Unpatched Vulnerability : CVE-2026-46269 | Nessus | Misc. | medium |
| 318710 | Linux Distros Unpatched Vulnerability : CVE-2025-71314 | Nessus | Misc. | medium |
| 318707 | Linux Distros Unpatched Vulnerability : CVE-2026-46260 | Nessus | Misc. | medium |
| 318705 | Linux Distros Unpatched Vulnerability : CVE-2026-46270 | Nessus | Misc. | medium |
| 318702 | Linux Distros Unpatched Vulnerability : CVE-2026-46264 | Nessus | Misc. | medium |
| 318701 | Linux Distros Unpatched Vulnerability : CVE-2026-37460 | Nessus | Misc. | high |
| 318693 | Linux Distros Unpatched Vulnerability : CVE-2026-37462 | Nessus | Misc. | high |
| 318692 | Linux Distros Unpatched Vulnerability : CVE-2026-46257 | Nessus | Misc. | medium |
| 318690 | JetBrains TeamCity < 2026.1.1 Reflected XSS (CVE-2026-49371) | Nessus | Misc. | high |
| 318689 | JetBrains TeamCity < 2025.11.5 Multiple Vulnerabilities | Nessus | Misc. | high |
| 318688 | JetBrains TeamCity < 2025.11.2 Sensitive Data Exposure (CVE-2026-49377) | Nessus | Misc. | medium |
| 318687 | JetBrains TeamCity < 2026.1 Multiple Vulnerabilities | Nessus | Misc. | high |
| 318685 | Notepad++ < 8.9.6.2 Arbitrary Code Execution | Nessus | Windows | high |
| 318684 | Notepad++ < 8.9.6.1 Multiple Vulnerabilities | Nessus | Windows | high |
| 318683 | HCL BigFix Remote Control <= 10.1.0.0442 Multiple Vulnerabilities | Nessus | CGI abuses | high |
| 318676 | IBM QRadar SIEM 7.5.x < 7.5.0 UP15 IF03 Multiple Vulnerabilities | Nessus | Misc. | critical |
| 318675 | Devolutions Server < 2026.1.20 Multiple Vulnerabilities (DEVO-2026-0014) | Nessus | Windows | medium |