Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade Splunk Enterprise to versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15, or higher.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://advisory.splunk.com/advisories/SVD-2026-1002 |
|
Thu, 08 Oct 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 07 Oct 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Splunk
Splunk splunk Enterprise |
|
| Vendors & Products |
Splunk
Splunk splunk Enterprise |
Wed, 07 Oct 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Access Control. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. The vulnerabilities are grouped by Common Weakness Enumeration (CWE), with one Common Vulnerabilities and Exposures (CVE) identifier assigned to each group. See Details for more information. | |
| Title | Improper Access Control in Splunk Enterprise | |
| Weaknesses | CWE-284 | |
| References |
|
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2026-10-08T18:41:40.463Z
Reserved: 2026-08-19T12:02:03.621Z
Link: CVE-2026-76281
No data.
Status : Awaiting Analysis
Published: 2026-10-07T21:17:19.483
Modified: 2026-10-08T20:08:45.857
Link: CVE-2026-76281
No data.
OpenCVE Enrichment
Updated: 2026-10-08T21:00:14Z
-
CWE-284
Improper Access Control