Vulnerability Management: Deprecation of Legacy ACR and AES Properties in Asset Exports
Tenable is deprecating the legacy acr_score
and exposure_score
properties returned by the Download assets chunk endpoint. These properties have been superseded by the enhanced v3 ACR and AES scores introduced in New ACR and AES Scores in Assets Exports on April 9, 2025.
Vulnerability Management and Web App Scanning: New Export Filters and Scoring Data (VPRv2, CVSSv4, EPSS)
Tenable has enhanced the Vulnerability Management vulnerabilities export and Web App Scanning findings export APIs with new filters and additional response data. These updates provide greater flexibility for querying and analyzing vulnerabilities, adding new filters and returning expanded scoring metrics in export responses.
Vulnerability Management: Deprecated Filter Endpoints
The following v2 filter endpoints are deprecated and are tentatively scheduled for removal on November 5. Tenable recommends transitioning to the replacement endpoints listed below. While the replacements are versioned as v1, they are the current and actively supported endpoints moving forward.
Tenable One: Inventory Export and Asset Search
Tenable is pleased to announce the release of the Inventory Export API for Tenable One. This API enables users to asynchronously export asset and findings data in either JSON or CSV format. The workflow includes endpoints to initiate an export, check export status, and download export chunks.
Web App Scanning: GraphQL API Assessment
Tenable Web App Scanning now supports GraphQL API scanning, expanding on the existing support for REST APIs. APIs are the foundation of modern web applications and a high-value target for attackers. An increasing number of applications use GraphQL, a modern and flexible API query language.
Tenable One API Available
Tenable is pleased to announce the new Tenable One API, featuring several new beta endpoints that enable you to search exposure view cards, query software inventory, and retrieve tag information from your environment. Additional Tenable One endpoints will be released in July.
Vulnerability Management: Tenable Agent Safe Mode
Documentation is now available for a new endpoint added to the Tenable Vulnerability Management API to support the new Tenable Agent safe mode feature. The new Get agent safe mode summary endpoint returns a summary of agents in safe mode for your container. The summary includes the total number of agents along with breakdowns by agent version and operating system platform.
Ask AI Now Available in the Developer Portal
Tenable is pleased to announce the addition of the Ask AI feature in the Developer Portal. This new AI-powered assistant enhances the user experience within the Developer Portal and helps users quickly find answers, generate code snippets, and understand complex concepts. The Ask AI feature is available in both the documentation section and the API explorer.
Attack Path Analysis: Upcoming Changes
The endpoint paths for the List attack paths and List findings endpoints are tentatively scheduled to change on August 30th.
Vulnerability Management: Shared Collections
Documentation is now available for new endpoints added to the Tenable Vulnerability Management API to support shared collections. Shared collections enable users to quickly and conveniently share scan configurations with other Tenable Vulnerability Management users and groups. For more information about shared collections, see Shared Collections in the Tenable Vulnerability Management User Guide.