← Back

CVE-2026-76256

nvd nist
Published: Aug 19, 2026Modified: Aug 26, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: psirt@cisco.com (Secondary)

Description

In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, and Splunk Secure Gateway versions below 3.10.9, 3.9.23, and 3.8.70, a user who does not hold the "admin" or "power" Splunk roles could read sensitive Security Assertion Markup Language setup and instance settings information through Splunk Secure Gateway Representational State Transfer (REST) API endpoints. The vulnerability is possible because the affected Security Assertion Markup Language setup and instance settings REST API endpoints do not enforce authorization requirements before returning configuration information.

Affected (7)

2 products
Splunk
Splunk Secure Gateway
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Splunk
From 10.0.0 to 10.0.9
From 10.2.0 to 10.2.6
From 10.4.0 to 10.4.2
From 9.4.0 to 9.4.14
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Splunk
From 3.10.0 to 3.10.9
From 3.8.0 to 3.8.70
From 3.9.0 to 3.9.23

References (1)

Source: psirt@cisco.com
Vendor Advisory

Timeline

No history available yet.