What is CVE-2026-76341?
This critical vulnerability in Splunk Enterprise allows a user with the "power" role to embed attacker-controlled SPL code in a Table Editor dataset, which gets executed by a user with the "admin" role. Affected versions are below 10.4.2, 10.2.6, 10.0.9, and 9.4.14; immediate patching to the corresponding version is strongly recommended.
Azərbaycanca: Bu kritik boşluq Splunk Enterprise proqramında "power" roluna malik istifadəçiyə, "admin" rolundakı istifadəçi tərəfindən icra olunan zərərli SPL kodunu Table Editor dataset-ə yerləşdirməyə imkan verir. Təsirə məruz qalan versiyalar 10.4.2, 10.2.6, 10.0.9 və 9.4.14-dən aşağıdır; dərhal müvafiq versiyaya yeniləmə etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-94; shared vendor: Splunk
FAQ2
How does CVE-2026-76341 affect Splunk Enterprise users?
This vulnerability allows a user with the "power" role to embed malicious SPL code in a Table Editor dataset, which gets executed by a user with the "admin" role.
Which Splunk Enterprise versions should be upgraded to mitigate CVE-2026-76341?
Affected versions are below 10.4.2, 10.2.6, 10.0.9, and 9.4.14. It is strongly recommended to upgrade to the corresponding version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.