Skip to content

Splunk Enterprise Flaws Expose Stored Credentials and Allow Arbitrary SPL Searches

Gbhackers •Divya • July 16, 2026

Splunk has released security updates for three vulnerabilities in Splunk Enterprise and Splunk Cloud Platform. These vulnerabilities could potentially expose stored credential hashes, enable arbitrary Processing Language (SPL) searches, and allow files to be written outside of the intended application directory. The flaws, tracked as CVE-2026-20296, CVE-2026-20297, and CVE-2026-20298, were disclosed on July 15, […]