What is CVE-2026-76353?
In affected Splunk Enterprise versions, a user without 'admin' or 'power' roles can exploit a crafted knowledge bundle delta to delete arbitrary files on a cluster manager. This vulnerability impacts system integrity; immediate update to fixed versions is recommended.
Azərbaycanca: Splunk Enterprise-in müəyyən versiyalarında 'admin' və ya 'power' rolu olmayan istifadəçi klaster menecerində fayl silinməsinə səbəb ola bilər. Bu boşluq sistem bütövlüyünə təsir göstərə bilər; təsirlənmiş versiyaları dərhal yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-732; shared vendor: Splunk
FAQ2
What permissions are required to exploit CVE-2026-76353?
A user without 'admin' or 'power' roles is sufficient to exploit this vulnerability.
In which Splunk Enterprise component does CVE-2026-76353 allow file deletion?
This vulnerability can lead to file deletion on the cluster manager.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.