CVE-2026-87037: Tanium addressed an improper access controls vulnerability in Comply.
Published Sep 9, 2026
·Updated
Tanium addressed an improper access controls vulnerability in Comply.
Affected Software
1 affected component
Tanium Comply
Event History
Sep 9, 2026
CVE Published
via MITRE·02:04 AM
Data Sourced
via MITRE·02:04 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access would an attacker need to exploit this issue?
The CVSS vector indicates that exploitation is network-accessible, requires low privileges, and does not require user interaction.
2
What is the potential impact if exploitation succeeds?
The vulnerability is rated medium severity with a CVSS score of 5.4. The vector indicates low impact to confidentiality and integrity, with no availability impact.