Inclusion of Sensitive Information in Log Files in Splunk Enterprise - CVE-2026-20239
Published: May 21, 2026
Splunk Enterprise
Detailed vulnerability description
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to missing output buffer sanitization in the TcpChannel component when discarding data during socket errors. A remote user can access the _internal index to disclose sensitive information.
Exposed data may include session cookies and response bodies containing sensitive information.