What is CVE-2026-76342?
This vulnerability allows a user with the 'power' role in affected Splunk Enterprise versions to store risky SPL commands in a Table Editor dataset and share it. The commands are executed when a user with the 'admin' role triggers that dataset.
Azərbaycanca: Bu boşluq Splunk Enterprise-in müəyyən versiyalarında 'power' roluna malik istifadəçiyə təhlükəli SPL əmrlərini Table Editor dataset-də saxlayıb paylaşmağa imkan verir. 'admin' roluna malik istifadəçi həmin dataset-i işə saldıqda həmin əmrlər icra olunur.
Related CVEs
link basis: same weakness class CWE-863; shared vendor: Splunk
FAQ1
What permission levels are required to exploit CVE-2026-76342 in Splunk Enterprise?
To exploit this vulnerability, a user with the 'power' role is required. The full successful execution of the attack depends on an action by a user with the 'admin' role.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.