LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-76396

splunk · ai toolkit

Published
CVSS7.5
Severityhigh
WeaknessCWE-269
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible because Splunk AI Toolkit does not mark the apply search command as risky. For more information see Troubleshoot the AI Toolkit (https://help.splunk.com/en/splunk-enterprise/apply-machine-learning/use-ai-toolkit/5.7.3/troubleshooting-the-ai-toolkit/troubleshoot-the-ai-toolkit) in the Splunk documentation.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-76396

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-76396.