Splunk cloud
This hub aggregates every CVE we track for Splunk cloud, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
11
CVEs tracked
0
Critical
5
High
0
In CISA KEV
Severity distribution
MEDIUM6HIGH5
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 11 most recently published vulnerabilities affecting Splunk cloud.
- CVE-2024-23676Sensitive Information Disclosure of Index Metrics through “mrollup” SPL Command4.6
- CVE-2024-23677Server Response Disclosure in RapidDiag Salesforce.com Log File4.3
- CVE-2024-23675Splunk App Key Value Store (KV Store) Improper Handling of Permissions Leads to KV Store Collection Deletion6.5
- CVE-2023-46213Cross-site Scripting (XSS) on “Show Syntax Highlighted” View in Search Page4.8
- CVE-2023-46214Remote code execution (RCE) in Splunk Enterprise through Insecure XML Parsing8.0
- CVE-2023-40597Absolute Path Traversal in Splunk Enterprise Using runshellscript.py7.8
- CVE-2023-40593Denial of Service (DoS) in Splunk Enterprise Using a Malformed SAML Request6.3
- CVE-2023-40594Denial of Service (DoS) via the ‘printf’ Search Function6.5
- CVE-2023-40592Reflected Cross-site Scripting (XSS) on "/app/search/table" web endpoint8.4
- CVE-2023-40595Remote Code Execution via Serialized Session Payload8.8
- CVE-2023-40598Command Injection in Splunk Enterprise Using External Lookups8.5
Product normalization is registry-driven with AI assist and human review. How it works