Skip to content
TenableCVE-2026-82123

Tenable Loops & Logic: cross-site scripting

Medium6.5CVE-2026-82123 · Published Aug 28, 2026 · updated Sep 8, 2026

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Tangible Loops & Logic.

Tenable advisory

Affected versions

PackageAffectedFixed in
Loops & Logic
Product
all versionsNo fix yet
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-79

More Tenable advisories

All Tenable
Advisory
Tenable Kubio AI Website Builder: improper input validation
Medium6.9Aug 31
Tenable Security Center: improper access control
Medium5.3Aug 14
Tenable Security Center: command injection
High8.7Aug 14
Tenable Security Center: SQL injection
High7.1Aug 14
Tenable Security Center: command injection
Critical9.4Aug 14
Tenable Security Center: command injection
Critical9.4Aug 14

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.