TAN-2026-017
Tanium addressed a User Interface (UI) Misrepresentation of Critical Information vulnerability in Tanium Server.
Severity: Low
Base Score: 2.7
Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
Impact
This vulnerability could allow an authenticated Tanium user with the "User Write" permission to hide other users from the 'Users' management UI.
Products Affected
2025H1 Release:
- Tanium Server prior to Update MR21 (v7.7.3.8298)
2025H2 Release:
- Tanium Server prior to Update MR11 (v7.8.2.1198)
2026H1 Release:
- Tanium Server prior to Update MR3 (v7.8.4.1327)
Available Updates
2025H1 Release:
- Update MR21 (Tanium Server v7.7.3.8298) and later
2025H2 Release:
- Update MR11 (Tanium Server v7.8.2.1198) and later
2026H1 Release:
- Update MR3 (Tanium Server v7.8.4.1327) and later
Workaround and Mitigations
None.
Acknowledgements
None.