📦 Tableau Server

by Tableau

🔍 What is Tableau Server?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-26496

CRITICAL CVSS 9.3 Aug 22, 2025

This CVE describes a type confusion vulnerability in Salesforce Tableau's file upload modules that allows local attackers to include and execute arbitrary code. It affects Tableau Server and Tableau D...

CVE-2025-52451

HIGH CVSS 8.5 Aug 22, 2025

An improper input validation vulnerability in Salesforce Tableau Server allows attackers to perform absolute path traversal through the tabdoc API's create-data-source-from-file-upload modules. This e...

CVE-2025-26498

HIGH CVSS 7.3 Aug 22, 2025

This vulnerability allows attackers to upload malicious files to Salesforce Tableau Server and traverse directory paths to write files to arbitrary locations. It affects Tableau Server installations o...

CVE-2025-52446

HIGH CVSS 8.0 Jul 25, 2025

An authorization bypass vulnerability in Salesforce Tableau Server allows attackers to manipulate interface parameters and gain unauthorized access to production database clusters. This affects Tablea...

CVE-2025-52448

HIGH CVSS 8.1 Jul 25, 2025

An authorization bypass vulnerability in Salesforce Tableau Server allows attackers to manipulate the validate-initial-sql API modules to gain unauthorized data access to the production database clust...

CVE-2025-52452

HIGH CVSS 8.5 Jul 25, 2025

This path traversal vulnerability in Salesforce Tableau Server allows attackers to access files outside the intended directory via the tabdoc API's duplicate-data-source modules. It affects Tableau Se...

CVE-2025-26494

HIGH CVSS 7.7 Feb 11, 2025

A Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server versions 2023.3 through 2023.3.5 allows attackers to bypass authentication mechanisms. This affects organizations runnin...

CVE-2025-26495

HIGH CVSS 7.5 Feb 11, 2025

This vulnerability allows Personal Access Tokens (PATs) to be stored in cleartext within Tableau Server logging repositories. Attackers with access to these logs could steal authentication tokens and ...

CVE-2022-22127

HIGH CVSS 7.2 May 25, 2022

This vulnerability allows a malicious Tableau Server site administrator to change passwords for users in different sites hosted on the same server when using Local Identity Store. This could lead to u...

CVE-2025-52454

MEDIUM CVSS 5.3 Jul 25, 2025

This SSRF vulnerability in Salesforce Tableau Server allows attackers to make the server send requests to internal resources, potentially accessing sensitive systems. It affects Tableau Server install...