CVE-2026-76370
- EPSS 0.21%
- Veröffentlicht 19.08.2026 21:34:57
- Zuletzt bearbeitet 20.08.2026 17:19:46
In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use the Representational State Transfer (REST) API to view the names and identifiers of tenants that fall outside the role scope for that user. The vulnera...
CVE-2026-76369
- EPSS 0.26%
- Veröffentlicht 19.08.2026 21:34:56
- Zuletzt bearbeitet 20.08.2026 17:19:46
In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outside the intended Automation Broker log directory. The vulnerability is possible because Automation Broker log uploads accept crafted filename input bef...
CVE-2026-76368
- EPSS 0.22%
- Veröffentlicht 19.08.2026 21:34:55
- Zuletzt bearbeitet 20.08.2026 17:19:45
In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permission could view metadata about a playbook repository that they are not authorized to view. The vulnerability is possible because Playbook History does...
- EPSS 0.15%
- Veröffentlicht 19.08.2026 21:34:55
- Zuletzt bearbeitet 20.08.2026 13:01:40
In Splunk SOAR versions below 8.6.0, a user who holds the "Incident Commander" Splunk SOAR role could store JavaScript in a note and run it in the browser of another user when that user opens the note. The stored Cross-Site Scripting (XSS) vulnerabil...
CVE-2026-76366
- EPSS 0.29%
- Veröffentlicht 19.08.2026 21:34:54
- Zuletzt bearbeitet 20.08.2026 17:19:45
In Splunk SOAR versions below 8.6.0, a user with a valid Splunk SOAR account could use Representational State Transfer (REST) API filtering on playbook runs to recover session tokens that compromise all data available to the affected user. The inform...
CVE-2026-76365
- EPSS 0.31%
- Veröffentlicht 19.08.2026 21:34:54
- Zuletzt bearbeitet 21.08.2026 04:18:25
In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structured Query Language (SQL) statements against the Splunk SOAR database through custom list retrieval in a playbook, allowing for...
CVE-2026-76364
- EPSS 0.29%
- Veröffentlicht 19.08.2026 21:34:53
- Zuletzt bearbeitet 21.08.2026 04:18:25
In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structured Query Language (SQL) statements against the Splunk SOAR database through custom function results, allowing for reading all...
CVE-2026-76362
- EPSS 0.18%
- Veröffentlicht 19.08.2026 21:34:52
- Zuletzt bearbeitet 21.08.2026 04:18:24
In Splunk SOAR versions below 8.6.0, an unauthenticated user who can observe or alter network traffic between Splunk SOAR and a configured CyberArk Representational State Transfer (REST) server could access or modify all relevant data exchanged throu...
CVE-2026-76363
- EPSS 0.29%
- Veröffentlicht 19.08.2026 21:34:52
- Zuletzt bearbeitet 21.08.2026 04:18:25
In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" role could run arbitrary Structured Query Language (SQL) statements against the Splunk SOAR database and create, read, update, or delete all data in the database. The vul...
CVE-2026-76361
- EPSS 0.22%
- Veröffentlicht 19.08.2026 21:34:51
- Zuletzt bearbeitet 20.08.2026 17:19:44
In Splunk SOAR versions below 8.6.0, a user with the "Administrator" role could use the /rest/support/connectivity/.../check_connectivity endpoint to make Splunk SOAR initiate outbound network connections to arbitrary destinations and determine wheth...