#VU123092 Insecure DLL loading in Splunk Enterprise - CVE-2026-20140
Published: February 19, 2026
Splunk Enterprise
Splunk Inc.
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to the application loads DLL libraries in an insecure manner. A local user who can create a directory on the system drive where Splunk Enterprise is installed and write a malicious DLL into that directory can execute arbitrary code with elevated privileges.
The vulnerability affects Windows installations only.