CVE-2026-87034: Tanium addressed a SQL injection vulnerability in Comply.
Published Sep 9, 2026
·Updated
Tanium addressed a SQL injection vulnerability in Comply.
Event History
Sep 9, 2026
CVE Published
via MITRE·02:08 AM
Data Sourced
via MITRE·02:08 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What does an attacker need to exploit this issue?
The vulnerability is network-accessible and does not require privileges, but exploitation has high attack complexity and requires user interaction.
2
What could successful exploitation affect?
The published vector indicates high impact to confidentiality, integrity, and availability, with impact extending beyond the initially vulnerable security authority.