Description

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Salesforce Tableau Server, Tableau Desktop on Windows, Linux (File Upload modules) allows Local Code Inclusion.This issue affects Tableau Server, Tableau Desktop: before 2025.1.3, before 2024.2.12, before 2023.3.19.

INFO

Published Date :

2025-08-22T20:10:41.238Z

Last Modified :

2026-02-26T17:48:15.308Z

Source :

Salesforce
AFFECTED PRODUCTS

The following products are affected by CVE-2025-26496 vulnerability.

Vendors Products
Linux
  • Linux
Microsoft
  • Windows
Salesforce
  • Tableau Desktop
  • Tableau Server
Tableau
  • Tableau Desktop
  • Tableau Server
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-26496.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact