Vulnerability intelligence
CVE-2026-15265
A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitrary files outside the intended plugin directory, potentially leading to remote code execution.
CVSS Score
9.3
Critical
EPSS — Exploit Probability
0.6%
Riskier than 44% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
unknown
Check vendor advisories
1 article across 1 outlet · first covered Jul 16, 2026 · latest Jul 16, 2026
Coverage timeline
-
Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilitieswww.securityweek.com · Jul 16, 2026