Skip to content

TAN-2026-017

Tanium addressed a User Interface (UI) Misrepresentation of Critical Information vulnerability in Tanium Server.

Severity: Low

Base Score: 2.7

Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N

Impact

This vulnerability could allow an authenticated Tanium user with the "User Write" permission to hide other users from the 'Users' management UI.

Products Affected

2025H1 Release:

  • Tanium Server prior to Update MR21 (v7.7.3.8298)

2025H2 Release:

  • Tanium Server prior to Update MR11 (v7.8.2.1198)

2026H1 Release:

  • Tanium Server prior to Update MR3 (v7.8.4.1327)

Available Updates

2025H1 Release:

  • Update MR21 (Tanium Server v7.7.3.8298) and later

2025H2 Release:

  • Update MR11 (Tanium Server v7.8.2.1198) and later

2026H1 Release:

  • Update MR3 (Tanium Server v7.8.4.1327) and later

Workaround and Mitigations

None.

Acknowledgements

None.