Splunk enterprise
This hub aggregates every CVE we track for Splunk enterprise, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
162
CVEs tracked
4
Critical
62
High
1
In CISA KEV
Severity distribution
MEDIUM86HIGH62LOW10CRITICAL4
Monthly trend
15
0
0
11
0
5
0
0
7
0
0
1
8
0
0
6
2
8
0
6
5
3
2
9
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Splunk enterprise.
- CVE-2026-20258Stored Cross-Site Scripting (XSS) through Classic Dashboard in Splunk Enterprise7.1
- CVE-2026-20253Unauthenticated Arbitrary File Creation and Truncation in a PostgreSQL Sidecar Service Endpoint in Splunk EnterpriseKEV9.8
- CVE-2026-20252Server-Side Request Forgery (SSRF) through Dashboard Studio PDF Export in Splunk Enterprise7.6
- CVE-2026-20257Improper Input Validation through Classic Dashboard CSS in Splunk Enterprise5.7
- CVE-2026-20259Improper Access Control in Splunk Enterprise5.5
- CVE-2026-20255Improper Input Validation through Classic Dashboards in Splunk Enterprise5.7
- CVE-2026-20251Remote Code Execution through Deserialization of Untrusted Data in Splunk Secure Gateway8.8
- CVE-2026-20254Information Disclosure through External Content Restriction Bypass in Splunk Enterprise5.7
- CVE-2026-20256Improper Input Validation through Protocol-Relative URL in Classic Dashboards in Splunk Enterprise5.7
- CVE-2026-20239Sensitive Information Disclosure through Log Files in Splunk Enterprise7.5
- CVE-2026-20240Denial of Service through coldToFrozen.sh Script in Splunk Enterprise6.5
- CVE-2026-20203Improper Access Control in Data Model Acceleration in Splunk Enterprise4.3
- CVE-2026-20204Improper Handling and Insufficient Isolation of Specific Temporary Files in Splunk Enterprise7.1
- CVE-2026-20202Improper Input Validation during User Account Creation in Splunk Enterprise6.6
- CVE-2026-20163Remote Command Execution (RCE) through the '/splunkd/__upload/indexing/preview' REST endpoint in Splunk Enterprise7.2
Product normalization is registry-driven with AI assist and human review. How it works