Cross-site scripting in Splunk Enterprise - CVE-2026-76324
Published: August 20, 2026
Vulnerability details
The vulnerability allows a remote user to execute unauthorized JavaScript in another user's browser.
The vulnerability exists due to cross-site scripting in Splunk Web Tours when rendering tour content and navigation links. A remote user can create a malicious tour and trick another user into opening a crafted tour link to execute JavaScript.
Exploitation requires the power Splunk role.