CVE-2025-26498
22.08.2025, 21:15
Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo modules) allows Absolute Path Traversal.This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tableau | tableau_server | 𝑥 < 2023.3.19 |
| tableau | tableau_server | 2024.2 ≤ 𝑥 < 2024.2.12 |
| tableau | tableau_server | 2025.1 ≤ 𝑥 < 2025.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration