Known Vulnerabilities for products from Splunk
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Splunk".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76405 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76404 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76403 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76402 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76401 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76400 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76399 json | Not Provided | 2026-08-19 | 2026-08-19 | |
| CVE-2026-76398 json | Not Provided | 2026-08-19 | 2026-08-20 | |
| CVE-2026-76397 json | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could access and delete all relevant data... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76396 json | In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a schedul... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76395 json | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute arbitrary code on the Splun... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76394 json | In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the "admin" or "power" Splunk roles could ... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76393 json | In Splunk AI Toolkit versions below 6.0.0, a user who can upload models could overwrite a model being uploaded by another use... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76392 json | In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could obtain predicta... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76391 json | In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could run searches wi... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76370 json | In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use the Representational State... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76369 json | In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outside the intended Automatio... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76368 json | In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permission could view metadata ... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76367 json | In Splunk SOAR versions below 8.6.0, a user who holds the "Incident Commander" Splunk SOAR role could store JavaScript in a n... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76366 json | In Splunk SOAR versions below 8.6.0, a user with a valid Splunk SOAR account could use Representational State Transfer (REST)... | Not Provided | 2026-08-19 | 2026-08-21 |
Known software with vulnerabilities from Splunk
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Splunk | Hadoop Connect | - |
| Application | Splunk | Nozzle | - |
| Application | Splunk | Software Development Kit | 0.1.0 |
| Application | Splunk | Splunk | 108.2.13425 |
| Application | Splunk | Universal Forwarder | 4.2.3.105575 |