Skip to content
TenableCVE-2026-92626

Tenable iDSecure: denial of service

High7.5CVE-2026-92626 · Published Sep 16, 2026 · updated Sep 18, 2026

Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service. The /api/dguardintegration/dguardVersion endpoint dereferences DGuard integration login state that may be unset, raising an unhandled null reference exception. The exception is thrown from an asynchronous method that returns void, so it is not observed by a caller and can terminate the iDSecure process.

Tenable advisory

Affected versions

PackageAffectedFixed in
iDSecure
Product
< 4.8.3.04.8.3.0
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-476

More Tenable advisories

All Tenable
Advisory
Tenable iDSecure: denial of service
High7.5Sep 16
Tenable Scada-LTS: remote code execution
High8.8Sep 16
Tenable Scada-LTS: SQL injection
Medium6.5Sep 16
Tenable Scada-LTS: improper access control
High8.8Sep 16
Tenable Kubio AI Website Builder: improper input validation
Medium6.9Aug 31
Tenable Loops & Logic: cross-site scripting
Medium6.5Aug 28

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.