CVE-2026-87021: Tanium addressed an unauthorized code execution vulnerability in Comply.
Published Sep 9, 2026
·Updated
Tanium addressed an unauthorized code execution vulnerability in Comply.
Affected Software
1 affected component
Tanium Comply
Event History
Sep 9, 2026
CVE Published
via MITRE·02:09 AM
Data Sourced
via MITRE·02:09 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack vector is network-based and has low complexity, but the attacker must already hold high privileges. No user interaction is required.
2
What could compromise of a vulnerable deployment allow?
The reported impact includes high confidentiality, integrity, and availability impact. Successful exploitation could therefore expose data, alter systems or data, and disrupt service availability.