As cited
Copy frozen at (site build).
NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk
Splunk released patches for multiple vulnerabilities in Splunk Enterprise versions prior to 10.4.2, 10.2.6, 10.0.9, and 9.4.14. The vulnerabilities include insufficient authentication and authorization controls in REST APIs allowing unauthorized access and arbitrary command execution, cross-site scripting (XSS) flaws, and unauthenticated remote code execution across components like Dataset Explorer, Dashboard Studio, and Search Head Cluster. Splunk also addressed third-party vulnerabilities integrated into its software stack.
Why it matters: Organizations running Splunk Enterprise must upgrade immediately to patch high-impact flaws that allow unauthenticated attackers to access sensitive data, execute code with elevated privileges, and manipulate configurations.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk
Splunk released patches for multiple vulnerabilities in Splunk Enterprise versions prior to 10.4.2, 10.2.6, 10.0.9, and 9.4.14. The vulnerabilities include insufficient authentication and authorization controls in REST APIs allowing unauthorized access and arbitrary command execution, cross-site scripting (XSS) flaws, and unauthenticated remote code execution across components like Dataset Explorer, Dashboard Studio, and Search Head Cluster. Splunk also addressed third-party vulnerabilities integrated into its software stack.
Why it matters: Organizations running Splunk Enterprise must upgrade immediately to patch high-impact flaws that allow unauthenticated attackers to access sensitive data, execute code with elevated privileges, and manipulate configurations.
- Source published
- First seen by Cybersecurity Tracker