Known vulnerabilities in Splunk Enterprise - page 4

Software CPE: cpe:2.3:a:splunk:splunk_enterprise:*:*:*:*:*:*:*:*
Total vulnerabilities: 472
Public exploits: 25
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Splunk Enterprise Splunk Enterprise is affected by 472 known vulnerabilities: 28 high, 292 medium, 152 low Critical High Medium Low

Vulnerabilities (472)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123097 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-20137
CWE-22 Medium
No
No
9.2.9, 9.3.7, 9.4.5, 10.0.3 19.02.2026 SB2026021959
#VU123093 - Cleartext Storage of Sensitive Information
CVE-2026-20142
CWE-312 Medium
No
No
9.2.11, 9.3.9, 9.4.7, 10.0.2 19.02.2026 SB2026021961
#VU123092 - Uncontrolled Search Path Element
CVE-2026-20140
CWE-427 Low
No
No
9.2.12, 9.3.9, 9.4.8, 10.0.3 19.02.2026 SB2026021960
#VU123091 - Untrusted Search Path
CVE-2026-20143
CWE-426 Low
No
No
9.3.9, 9.4.8, 10.0.3 19.02.2026 SB2026021960
#VU118191 - Resource exhaustion
CVE-2025-61724
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110731
SB2025111491
and 20 more
#VU118190 - Resource exhaustion
CVE-2025-58183
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110725
SB2025110726
and 172 more
#VU118189 - Improper input validation
CVE-2025-58188
CWE-20 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 108 more
#VU118188 - Allocation of Resources Without Limits or Throttling
CVE-2025-58186
CWE-770 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110731
SB2025120304
and 19 more
#VU118187 - Resource exhaustion
CVE-2025-58185
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 110 more
#VU118186 - Improper input validation
CVE-2025-47912
CWE-20 Low
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110731
SB2025120304
and 19 more
#VU118184 - Resource exhaustion
CVE-2025-61723
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 116 more
#VU118183 - Improper Encoding or Escaping of Output
CVE-2025-58189
CWE-116 Low
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110711
SB2025110712
and 118 more
#VU118181 - Resource exhaustion
CVE-2025-58187
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110706
SB2025110731
SB2025112832
and 21 more
#VU118179 - Resource exhaustion
CVE-2025-61725
CWE-400 Medium
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.11.2025 SB2025110705
SB2025110714
SB2025110715
and 74 more
#VU114080 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-47907
CWE-362 Low
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 48 more
#VU114079 - Improper input validation
CVE-2025-47906
CWE-20 Low
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 130 more
#VU113118 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-27210
CWE-22 Low
Available
No
9.2.12, 9.3.9, 9.4.8, 10.0.3 22.07.2025 SB2025072233
SB2025082103
SB2025091525
and 6 more
#VU113069 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-53643
CWE-444 Medium
No
No
9.2.12, 9.3.9, 9.4.8, 10.0.3 18.07.2025 SB2025071857
SB2025090377
SB2025091303
and 15 more
#VU110251 - Exposure of sensitive information to an unauthorized actor
CVE-2025-4673
CWE-200 Low
No
No
9.2.12, 9.3.9, 9.3.10, 9.4.8, 9.4.9, 10.0.3, 10.0.4, 10.2.1 07.06.2025 SB2025060701
SB2025060702
SB2025061002
and 35 more
#VU109241 - Error Handling
CVE-2025-23166
CWE-388 Medium
No
No
9.2.12, 9.3.9, 9.4.8, 10.0.3 16.05.2025 SB2025051605
SB2025051901
SB2025051902
and 28 more


Showing elements 61 - 80 out of 472