What is CVE-2026-76338?
In affected versions of Splunk Enterprise, an unauthenticated user with access to a trusted distributed search private key can forge an administrative session token. This allows for unauthorized access to all data, compromises system integrity, and disrupts service availability. Organizations using vulnerable versions must immediately apply the security updates.
Azərbaycanca: Splunk Enterprise-in müəyyən versiyalarında autentifikasiya olunmamış istifadəçi etibarlı distributed search private key əldə etdikdə inzibati session token yarada bilər. Bu, bütün məlumatlara icazəsiz giriş, sistem bütövlüyünə təsir və xidmət əlçatanlığının pozulması ilə nəticələnir. Təsirə məruz qalan versiyalardan istifadə edən təşkilatlar dərhal təhlükəsizlik yeniləmələrini tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-287
FAQ1
Does exploiting CVE-2026-76338 require the attacker to be authenticated?
No, in this vulnerability, an unauthenticated user with access to a trusted distributed search private key can forge an administrative session token.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.