LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-76399

splunk · ai toolkit

Published
CVSS8.1
Severityhigh
WeaknessCWE-732
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Description

In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk role could modify app-provided scheduled searches to run arbitrary Search Processing Language (SPL) using the permissions of the search owner, which could allow access to all relevant data and affect system integrity. The vulnerability is possible because Splunk AI Toolkit gives the "power" Splunk role permission to modify scheduled searches that run using the permissions of the search owner.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-76399

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-76399.