CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6034

As cited

Copy frozen at (site build).

NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk

Splunk released patches for multiple vulnerabilities in Splunk Enterprise versions prior to 10.4.2, 10.2.6, 10.0.9, and 9.4.14. The vulnerabilities include insufficient authentication and authorization controls in REST APIs allowing unauthorized access and arbitrary command execution, cross-site scripting (XSS) flaws, and unauthenticated remote code execution across components like Dataset Explorer, Dashboard Studio, and Search Head Cluster. Splunk also addressed third-party vulnerabilities integrated into its software stack.

Why it matters: Organizations running Splunk Enterprise must upgrade immediately to patch high-impact flaws that allow unauthenticated attackers to access sensitive data, execute code with elevated privileges, and manipulate configurations.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk

Splunk released patches for multiple vulnerabilities in Splunk Enterprise versions prior to 10.4.2, 10.2.6, 10.0.9, and 9.4.14. The vulnerabilities include insufficient authentication and authorization controls in REST APIs allowing unauthorized access and arbitrary command execution, cross-site scripting (XSS) flaws, and unauthenticated remote code execution across components like Dataset Explorer, Dashboard Studio, and Search Head Cluster. Splunk also addressed third-party vulnerabilities integrated into its software stack.

Why it matters: Organizations running Splunk Enterprise must upgrade immediately to patch high-impact flaws that allow unauthenticated attackers to access sensitive data, execute code with elevated privileges, and manipulate configurations.

VendorsSplunk
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary