Input validation error in Splunk Enterprise - CVE-2026-76323
Published: August 20, 2026
Vulnerability details
The vulnerability allows a remote user to bypass SPL risky command safeguards.
The vulnerability exists due to improper input validation in the Job Details dashboard when placing a caller-supplied search identifier into SPL searches. A remote user can trick another user into opening a crafted dashboard link to run injected SPL with that user's permissions.
The initiating user should not be able to exploit the vulnerability at will.