search
Splunk Enterprise
Trends
- 1Splunk Patches 90 Vulnerabilities Including Critical RCE Flaws▼Splunk Patches 90 Vulnerabilities Including Critical Remote Code Execution Flaws Splunk released a massive set security
Splunk has released a large batch of security updates fixing 90 vulnerabilities across its products. The patches address critical remote code execution flaws in the Patroni REST API as well as improper access control issues in Splunk Enterprise. Administrators are urged to apply the updates promptly, as the critical flaws could allow attackers to run arbitrary code on affected systems.
- 2Critical unauthenticated RCE vulnerability hits Splunk Enterprise●Une vulnérabilité critique dans Splunk Enterprise permet à un attaquant non authentifié d'exécuter des commandes OS à di
A critical vulnerability in Splunk Enterprise reportedly allows an unauthenticated attacker to execute operating system commands remotely. Cybersecurity commentators stress that pre-authentication remote code execution is the most direct route to an initial network compromise, and note that Splunk deployments often sit at the centre of large environments, making the exposed attack surface a serious concern for defenders.
- 3Critical Splunk flaw lets attackers run OS commands unauthenticated●An unauthenticated attacker with network access to a Splunk search head cluster member can execute arbitrary OS commands
A critical vulnerability, tracked as CVE-2026-76268 with a CVSS score of 9.1, affects Splunk Enterprise search head cluster members running versions 10.4.x and 10.2.x. An attacker with network access can execute arbitrary operating system commands without credentials or user interaction. The flaw is tied to Patroni, a component bundled with Splunk Enterprise.
- 4Critical Splunk vulnerability CVE-2026-76268 earns maximum severity score●🔴 CVE-2026-76268 - Critical (9.8) In Splunk Enterprise versions below 10.4.3 and 10.2.7, an unauthenticated user with ne
A critical vulnerability, CVE-2026-76268, has been disclosed in Splunk Enterprise versions below 10.4.3 and 10.2.7. The flaw, scored 9.8, allows an unauthenticated attacker with network access to the Patroni REST API on a search head cluster member to execute arbitrary code. Security teams are urged to patch affected deployments immediately.
- 5Splunk fixes high-severity Linux privilege vulnerability CVE-2026-76266●🟠 CVE-2026-76266 - High (7.7) In Splunk Enterprise versions below 10.4.3, 10.2.7, 10.0.10, and 9.4.15 on Linux, a local
A high-severity vulnerability, CVE-2026-76266, has been disclosed affecting Splunk Enterprise on Linux in versions below 10.4.3, 10.2.7, 10.0.10 and 9.4.15. A local user able to run commands as the account running Splunk Enterprise could cause a package upgrade to execute attacker-controlled code. Admins on affected Linux deployments are urged to patch promptly.