Multiple Vulnerabilities Discovered in Splunk Products Affecting Security Integrity
Article Content
- •Splunk disclosed multiple vulnerabilities across its products with CVSS scores up to 8.1.
- •CVE-2026-76338 and CVE-2026-76364 allow unauthorized access and SQL injection, respectively.
- •Organizations are urged to upgrade to the latest versions to mitigate these vulnerabilities.
Splunk has disclosed several vulnerabilities affecting its products, including Splunk Enterprise, SOAR, and AI Toolkit. Key vulnerabilities include CVE-2026-76338, CVE-2026-76352, CVE-2026-76362, CVE-2026-76364, and CVE-2026-76399, with CVSS scores ranging from 6.5 to 8.1. Attack vectors include unauthorized access through REST API exploitation, Cross-Site Scripting (XSS), and SQL injection. Affected systems include Splunk Enterprise versions below 10.4.2 and Splunk SOAR versions below 8.6.0. Users are advised to upgrade to the latest versions to mitigate risks. Current reports indicate no public proof-of-concept exploits, but the vulnerabilities pose significant risks to data confidentiality and system integrity. Organizations should audit their configurations and restrict roles to trusted users.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (11)
Following this threat?
Track CVE-2026-76338 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Twitch Chat Messages Exploit OBS Studio via Chromium Vulnerability A vulnerability in OBS Studio allows malicious Twitch chat messages to execute native code on streamers' Windows PCs. This exploit targets users running OBS Studio version 32.2.2 or older, leveraging a cross-site scripting (XSS) flaw in custom overlays that render viewer messages as unsanitized HTML. The attack…