Tenable Identity Exposure patches 100+ flaws
Tenable has patched over 100 vulnerabilities in Identity Exposure versions prior to v3.93.5, including flaws enabling remote code execution, SQL injection, and data breaches.
France's CERT-FR issued an advisory for multiple vulnerabilities discovered in Tenable Identity Exposure affecting all versions prior to v3.93.5. The security update addresses over 100 CVEs spanning a wide range of vulnerability classes including remote code execution, SQL injection, denial of service, security policy bypass, and confidentiality breaches. The sheer volume of patched flaws suggests either a comprehensive security audit or coordinated disclosure of accumulated issues.
Tenable Identity Exposure is an Active Directory security solution used to detect attack paths and privilege escalation risks in enterprise environments. Given its access to sensitive directory data and authentication infrastructure, these vulnerabilities could allow attackers to compromise identity management systems, potentially enabling lateral movement across enterprise networks. The advisory lists impacts including arbitrary code execution, SQL injection, and data integrity violations.
Tenable released security bulletin TNS-2026-16 on June 23, 2026, providing patches in version 3.93.5. Organizations running earlier versions should prioritize this update given the product's privileged access to directory infrastructure and the presence of remote code execution vulnerabilities.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0796
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free