Vulnerability Watch
Breaking alerts on threats and vulnerabilities from our Research Special Operations team.Latest Activity: 18 hours agoProduct Announcements
Discover new product releases, features, and innovations with Tenable's latest updates.Latest Activity: 1 day agoTenable Research Release Highlights
Stay updated on key research releases, plugin updates, and audit files impacting you.Latest Activity: 4 days agoRecent Content
Key findings from the Verizon DBIR 2026: Slower vulnerability remediation meets faster exploitation
Verizon’s annual Data Breach Investigations Report (DBIR) has helped organizations understand evolving cyber threats since its first release in 2008. For the 2026 edition, Tenable Research once again...10Views0likes0CommentsFAQ about the continued exploitation of Cisco Catalyst SD-WAN vulnerabilities (CVE-2026-20182)
Multiple critical authentication bypass vulnerabilities in Cisco Catalyst SD-WAN Controller and Manager are under active exploitation. A sophisticated threat actor tracked as UAT-8616 has been exploi...21Views0likes0CommentsCVE-2026-46300 (Fragnesia): Frequently Asked Questions About New Linux Kernel Privilege Escalation
On May 13, researcher William Bowling of V12 Security disclosed Fragnesia (CVE-2026-46300), a new local privilege escalation vulnerability in the Linux kernel's XFRM ESP-in-TCP subsystem. The exploit...Dirty Frag (CVE-2026-43284, CVE-2026-43500): FAQs about this Linux kernel LPE vulnerability chain
Dirty Frag is a local privilege escalation (LPE) vulnerability that allows a local user to escalate their privileges to root. It was publicly disclosed on May 7 after the vulnerability’s embargo was...136Views0likes0Comments