Security Advisory

CVE-2025-26496

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-22 20:10:41
Last updated 2026-02-26 17:48:15
Assigner Salesforce
State PUBLISHED

Description

Access of Resource Using Incompatible Type (Type Confusion) vulnerability in Salesforce Tableau Server, Tableau Desktop on Windows, Linux (File Upload modules) allows Local Code Inclusion.This issue affects Tableau Server, Tableau Desktop: before 2025.1.3, before 2024.2.12, before 2023.3.19.