Improper access control in Splunk Enterprise - CVE-2026-76310
Published: August 20, 2026
Vulnerability details
The vulnerability allows a remote attacker to access data and affect system integrity.
The vulnerability exists due to improper access control in embedded report REST API requests when downloading dispatch archives. A remote attacker can use an embedded report token to download a search job dispatch archive and recover session material.
Exploitation requires possession of an embedded report token.