Plugins

As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 317806 plugins, covering 116389 CVE IDs and 30933 Bugtraq IDs.

Search

Newest

IDNameProductFamilySeverity
303506Mozilla Thunderbird < 149.0NessusWindows
critical
303505Mozilla Thunderbird < 140.9NessusMacOS X Local Security Checks
critical
303504Mozilla Thunderbird < 149.0NessusMacOS X Local Security Checks
critical
303503Mozilla Thunderbird < 140.9NessusWindows
critical
303502MiracleLinux 9 : mysql-8.0.45-1.el9_7.ML.1 (AXSA:2026-353:01)NessusMiracle Linux Local Security Checks
medium
303501Oracle Linux 8 : opencryptoki (ELSA-2026-5587)NessusOracle Linux Local Security Checks
medium
303500Oracle Linux 8 : nginx:1.24 (ELSA-2026-5581)NessusOracle Linux Local Security Checks
high
303499Oracle Linux 8 : gnutls (ELSA-2026-5585)NessusOracle Linux Local Security Checks
medium
303498Oracle Linux 9 : vim (ELSA-2026-5602)NessusOracle Linux Local Security Checks
medium
303497Oracle Linux 8 : 389-ds:1.4 (ELSA-2026-5513)NessusOracle Linux Local Security Checks
high
303496Oracle Linux 8 : python3 (ELSA-2026-5588)NessusOracle Linux Local Security Checks
medium
303495Oracle Linux 9 : opencryptoki (ELSA-2026-5603)NessusOracle Linux Local Security Checks
medium
303494Node.js 20.x < 20.20.2 Multiple Vulnerabilities (Tuesday, March 24, 2026 Security Releases).NessusMisc.
high
303493RHEL 9 : mysql:8.4 (RHSA-2026:5640)NessusRed Hat Local Security Checks
medium
303492RockyLinux 9 : mysql:8.4 (RLSA-2026:5640)NessusRocky Linux Local Security Checks
medium
303491TencentOS Server 4: vim (TSSA-2026:0178)NessusTencent Local Security Checks
high
303490TencentOS Server 2: python-pyasn1 (TSSA-2026:0182)NessusTencent Local Security Checks
high
303489TencentOS Server 4: ocaml (TSSA-2026:0175)NessusTencent Local Security Checks
high
303488TencentOS Server 4: grafana (TSSA-2026:0177)NessusTencent Local Security Checks
critical
303487TencentOS Server 3: gimp:2.8 (TSSA-2026:0184)NessusTencent Local Security Checks
high
303486Linux Distros Unpatched Vulnerability : CVE-2026-4775NessusMisc.
high
303485Linux Distros Unpatched Vulnerability : CVE-2026-4751NessusMisc.
medium
303484Linux Distros Unpatched Vulnerability : CVE-2026-27651NessusMisc.
high
303483Linux Distros Unpatched Vulnerability : CVE-2026-4750NessusMisc.
critical
303482Apple iOS < 26.4 Multiple Vulnerabilities (126792)NessusMobile Devices
medium
303481macOS 26.x < 26.4 Multiple Vulnerabilities (126794)NessusMacOS X Local Security Checks
high
303480Apple iOS < 18.7.7 Multiple Vulnerabilities (126793)NessusMobile Devices
high
303479macOS 14.x < 14.8.5 Multiple Vulnerabilities (126796)NessusMacOS X Local Security Checks
high
303478macOS 15.x < 15.7.5 Multiple Vulnerabilities (126795)NessusMacOS X Local Security Checks
high
303477Linux Distros Unpatched Vulnerability : CVE-2026-4538NessusMisc.
high
303476Linux Distros Unpatched Vulnerability : CVE-2026-4675NessusMisc.
high
303475Linux Distros Unpatched Vulnerability : CVE-2026-4680NessusMisc.
high
303474Mozilla Firefox < 149.0NessusWindows
high
303473Mozilla Firefox ESR < 140.9NessusMacOS X Local Security Checks
high
303472Mozilla Firefox ESR < 140.9NessusWindows
high
303471Mozilla Firefox < 149.0NessusMacOS X Local Security Checks
high
303470Mozilla Firefox ESR < 115.34NessusMacOS X Local Security Checks
high
303469Mozilla Firefox ESR < 115.34NessusWindows
high
303468Oracle Linux 10 / 9 : Unbreakable Enterprise kernel (ELSA-2026-50160)NessusOracle Linux Local Security Checks
critical
303467Linux Distros Unpatched Vulnerability : CVE-2026-4678NessusMisc.
high
303466Linux Distros Unpatched Vulnerability : CVE-2026-30836NessusMisc.
critical
303465Linux Distros Unpatched Vulnerability : CVE-2026-4679NessusMisc.
high
303464Linux Distros Unpatched Vulnerability : CVE-2026-4677NessusMisc.
high
303463Linux Distros Unpatched Vulnerability : CVE-2026-33191NessusMisc.
high
303462Linux Distros Unpatched Vulnerability : CVE-2026-33040NessusMisc.
high
303461Linux Distros Unpatched Vulnerability : CVE-2026-33064NessusMisc.
high
303460Linux Distros Unpatched Vulnerability : CVE-2026-33065NessusMisc.
medium
303459Linux Distros Unpatched Vulnerability : CVE-2026-33192NessusMisc.
high
303458Linux Distros Unpatched Vulnerability : CVE-2026-33186NessusMisc.
critical
303457Linux Distros Unpatched Vulnerability : CVE-2026-30924NessusMisc.
critical

Updated

IDNameProductFamilySeverity
66334Patch ReportNessusGeneral
info
60023ActiveSync Data CollectNessusMobile Devices
info
53545Plone DetectionNessusCGI abuses
info
505309Qnap QTS and QuTS hero Improper Neutralization of Special Elements used in an OS Command (CVE-2024-14026)Tenable OT SecurityTenable.ot
medium
505308Qnap QTS and QuTS hero Improper Neutralization of Special Elements used in a Command (CVE-2024-14026)Tenable OT SecurityTenable.ot
medium
505307Qnap QTS and QuTS hero Improper Neutralization of CRLF Sequences (CVE-2024-14026)Tenable OT SecurityTenable.ot
medium
505306Qnap QTS and QuTS hero Improper Neutralization of CRLF Sequences (CVE-2024-14026)Tenable OT SecurityTenable.ot
medium
505305Siemens APE1808 Inconsistent Interpretation of HTTP Requests (CVE-2025-55018)Tenable OT SecurityTenable.ot
medium
505304Siemens SIMATIC S7-1500 NULL Pointer Dereference (CVE-2025-38364)Tenable OT SecurityTenable.ot
medium
505303Siemens SIMATIC S7-1500 Improper Input Validation(CVE-2025-38457)Tenable OT SecurityTenable.ot
medium
505302Siemens APE1808 Improper Neutralization of Script in Attributes in a Web Page (CVE-2025-4615)Tenable OT SecurityTenable.ot
high
505301Siemens APE1808 Insertion of Sensitive Information into Sent Data (CVE-2024-46665)Tenable OT SecurityTenable.ot
low
505300Siemens APE1808 Heap-based Buffer Overflow (CVE-2023-27997)Tenable OT SecurityTenable.ot
critical
505299Siemens SIMATIC S7-1500 Use After Free (CVE-2025-38212)Tenable OT SecurityTenable.ot
high
505298Siemens APE1808 Improper Restriction of Communication Channel to Intended Endpoints (CVE-2024-26013)Tenable OT SecurityTenable.ot
high
505297Siemens SIMATIC S7-1500 Use After Free(CVE-2025-38236)Tenable OT SecurityTenable.ot
high
505296Siemens APE1808 Improper Check for Unusual or Exceptional Conditions (CVE-2026-0227)Tenable OT SecurityTenable.ot
high
505295Siemens SIMATIC S7-1500 Improper Input Validation (CVE-2025-38067)Tenable OT SecurityTenable.ot
medium
505294Siemens SIMATIC S7-1500 Improper Input Validation (CVE-2025-38071)Tenable OT SecurityTenable.ot
medium
505293Siemens APE1808 Integer Overflow or Wraparound (CVE-2024-46669)Tenable OT SecurityTenable.ot
medium
505292Siemens SIMATIC S7-1500 NULL Pointer Dereference(CVE-2025-38231)Tenable OT SecurityTenable.ot
medium
505291Siemens APE1808 Use of Externally-Controlled Format String (CVE-2025-64157)Tenable OT SecurityTenable.ot
high
505290Siemens SIMATIC S7-1500 NULL Pointer Dereference (CVE-2025-38100)Tenable OT SecurityTenable.ot
medium
505289Siemens APE1808 Improper Restriction of Communication Channel to Intended Endpoints (CVE-2024-50565)Tenable OT SecurityTenable.ot
high
505288Siemens SIMATIC S7-1500 NULL Pointer Dereference (CVE-2025-38198)Tenable OT SecurityTenable.ot
high
505287Siemens SIMATIC S7-1500 NULL Pointer Dereference(CVE-2025-38214)Tenable OT SecurityTenable.ot
medium
505286Siemens APE1808 Heap-based Buffer Overflow (CVE-2022-42475)Tenable OT SecurityTenable.ot
critical
505285Siemens SIMATIC S7-1500 Integer Overflow or Wraparound (CVE-2025-38222)Tenable OT SecurityTenable.ot
medium
505284Siemens SIMATIC S7-1500 Concurrent Execution using Shared Resource with Improper Synchronization (CVE-2025-38393)Tenable OT SecurityTenable.ot
medium
505283Siemens SIMATIC S7-1500 Improper Locking (CVE-2025-38058)Tenable OT SecurityTenable.ot
medium
505282Siemens SIMATIC S7-1500 Improper Input Validation (CVE-2025-38470)Tenable OT SecurityTenable.ot
medium
505281Siemens SIMATIC S7-1500 Improper Input Validation (CVE-2025-38280)Tenable OT SecurityTenable.ot
high
505280Siemens SIMATIC S7-1500 Missing Release of Memory after Effective Lifetime (CVE-2025-38124)Tenable OT SecurityTenable.ot
medium
505279Siemens APE1808 Weak Authentication (CVE-2024-50563)Tenable OT SecurityTenable.ot
critical
505278Siemens APE1808 Improper Check for Unusual or Exceptional Conditions(CVE-2026-0229)Tenable OT SecurityTenable.ot
high
505277Siemens APE1808 Exposure of Sensitive Information to an Unauthorized Actor (CVE-2025-68686)Tenable OT SecurityTenable.ot
medium
505276Siemens SIMATIC S7-1500 Improper Input Validation (CVE-2025-38400)Tenable OT SecurityTenable.ot
medium
505275Siemens SIMATIC S7-1500 Concurrent Execution using Shared Resource with Improper Synchronization (CVE-2025-38083)Tenable OT SecurityTenable.ot
medium
505274Siemens APE1808 Improper Restriction of Communication Channel to Intended Endpoints (CVE-2025-22251)Tenable OT SecurityTenable.ot
medium
505273Siemens SIMATIC S7-1500 Double Free (CVE-2025-38079)Tenable OT SecurityTenable.ot
high
505272Siemens APE1808 Insufficient Session Expiration (CVE-2025-25252)Tenable OT SecurityTenable.ot
medium
505271Siemens APE1808 Insertion of Sensitive Information into Sent Data (CVE-2024-47569)Tenable OT SecurityTenable.ot
medium
505270Siemens APE1808 Improper Limitation of a Pathname to a Restricted Directory (CVE-2024-48885)Tenable OT SecurityTenable.ot
critical
505269Siemens APE1808 Authentication Bypass Using an Alternate Path or Channel (CVE-2026-24858)Tenable OT SecurityTenable.ot
critical
505268Siemens SIMATIC S7-1500 NULL Pointer Dereference(CVE-2025-38215)Tenable OT SecurityTenable.ot
medium
505267Siemens SIMATIC S7-1500 NULL Pointer Dereference (CVE-2025-38167)Tenable OT SecurityTenable.ot
medium
505266Siemens APE1808 Improper Limitation of a Pathname to a Restricted Directory (CVE-2024-48884)Tenable OT SecurityTenable.ot
critical
505265Siemens APE1808 Improper Certificate Validation (CVE-2026-0228)Tenable OT SecurityTenable.ot
medium
505264Siemens SIMATIC S7-1500 Reachable Assertion (CVE-2025-38285)Tenable OT SecurityTenable.ot
medium
505263Siemens APE1808 Incorrect Provision of Specified Functionality (CVE-2025-58325)Tenable OT SecurityTenable.ot
medium