Missing Authorization in Splunk Security Orchestration, Automation and Response (SOAR) - CVE-2026-76360
Published: August 20, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to missing authorization in the /rest/health endpoint when handling requests for system health and cluster state. A remote user can query the endpoint to disclose sensitive information.
The exposed data includes system and cluster telemetry.