CVE-2026-2698Authorization Bypass Through User-Controlled Key in Security Center

Severity
5.7MEDIUMNVD
EPSS
0.0%
top 89.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 23

Description

An improper access control vulnerability exists where an authenticated user could access areas outside of their authorized scope.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Packages2 packages

CVEListV5tenable/security_center< 6.8.0

🔴Vulnerability Details

2
CVEList
Improper Access Control2026-02-23
GHSA
GHSA-vm54-j482-hx4h: An improper access control vulnerability exists where an authenticated user could access areas outside of their authorized scope2026-02-23
CVE-2026-2698 — Tenable Security Center vulnerability | cvebase