Forkast·
Tenable Identity Exposure SaaS Has CVSS 9.9 Command Injection That Hands Attackers SYSTEM on the Domain Controller
9.9
CVSS severity score
CVE-2026-106126 presents a critical security failure in the Tenable Identity Exposure (SaaS) platform, carrying a CVSS v3 base score of 9.9. The vulnerability, a command injection (CWE-78), highlights a recurring irony in modern enterprise…