What is CVE-2026-76354?
CVE-2026-76354 is a vulnerability in Splunk Enterprise below versions 10.4.2, 10.2.6, 10.0.9, and 9.4.14 that allows a user without "admin" or "power" roles to affect system integrity and availability by sending a crafted REST API request to delete or temporarily overwrite files. Upgrading to the patched versions is recommended to mitigate the issue.
Azərbaycanca: CVE-2026-76354 zəifliyi Splunk Enterprise-in müəyyən versiyalarında "admin" və ya "power" roluna malik olmayan istifadəçiyə xüsusi hazırlanmış REST API sorğusu vasitəsilə faylları silməyə və ya müvəqqəti olaraq üzərinə yazmağa imkan verir, bu da sistem bütövlüyünə və əlçatanlığına təsir göstərə bilər. Təsirə məruz qalan versiyalar 10.4.2, 10.2.6, 10.0.9 və 9.4.14-dən aşağı olanlardır; həmin versiyalara yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-732; shared vendor: Splunk
FAQ2
Which versions of Splunk Enterprise are affected by CVE-2026-76354?
The affected versions are those below 10.4.2, 10.2.6, 10.0.9, and 9.4.14.
What privilege level is required to exploit CVE-2026-76354?
Exploiting this vulnerability does not require the "admin" or "power" role; a user without these roles can send a crafted REST API request to delete or temporarily overwrite files.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.