Known vulnerabilities in Splunk Enterprise - page 2

Software CPE: cpe:2.3:a:splunk:splunk_enterprise:*:*:*:*:*:*:*:*
Total vulnerabilities: 532
Public exploits: 25
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Splunk Enterprise Splunk Enterprise is affected by 532 known vulnerabilities: 31 high, 315 medium, 186 low Critical High Medium Low

Vulnerabilities (532)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144477 - Improper Access Control
CVE-2026-76345
CWE-284 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144478 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-76346
CWE-79 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144479 - Server-Side Request Forgery (SSRF)
CVE-2026-76347
CWE-918 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144480 - Missing Authorization
CVE-2026-76348
CWE-862 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144481 - Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-76349
CWE-943 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144482 - Improper Privilege Management
CVE-2026-76350
CWE-269 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144483 - Server-Side Request Forgery (SSRF)
CVE-2026-76351
CWE-918 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144484 - Path Traversal: \'../filedir\'
CVE-2026-76353
CWE-24 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144485 - Improper Neutralization of Null Byte or NUL Character
CVE-2026-76354
CWE-158 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144456 - Improper input validation
CVE-2026-76323
CWE-20 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144429 - Missing Authorization
CVE-2026-76251
CWE-862 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144430 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-76252
CWE-79 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144431 - Improper Privilege Management
CVE-2026-76253
CWE-269 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144432 - Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-76254
CWE-943 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144433 - Missing Authorization
CVE-2026-76255
CWE-862 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144434 - Exposure of sensitive information to an unauthorized actor
CVE-2026-76256
CWE-200 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144435 - Missing Authorization
CVE-2026-76257
CWE-862 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144440 - Exposure of sensitive information to an unauthorized actor
CVE-2026-76262
CWE-200 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144425 - Improper Authentication
CVE-2026-76338
CWE-287 Low
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083
#VU144426 - Improper Authorization
CVE-2026-76352
CWE-285 Medium
No
No
9.4.14, 10.0.9, 10.2.6, 10.4.2 20.08.2026 SB2026082083


Showing elements 21 - 40 out of 532