What is CVE-2026-76362?
CVE-2026-76362 is a vulnerability in Splunk SOAR versions below 8.6.0 that allows an unauthenticated attacker who can observe or alter network traffic to access and modify all data exchanged with a CyberArk REST server. This issue stems from unprotected communication between SOAR and the credential manager. Upgrading Splunk SOAR to version 8.6.0 or later is recommended.
Azərbaycanca: CVE-2026-76362, Splunk SOAR-ın 8.6.0-dan əvvəlki versiyalarında şəbəkə trafikini müşahidə edə bilən autentifikasiya olunmamış şəxsə CyberArk REST serveri ilə mübadilə edilən bütün məlumatlara giriş və dəyişiklik etmə imkanı verən boşluqdur. Bu problem SOAR və kredensial meneceri arasındakı rabitənin qorunmamasından qaynaqlanır. Splunk SOAR-ı ən azı 8.6.0 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: Splunk
FAQ2
Which versions of Splunk SOAR are affected by CVE-2026-76362?
Splunk SOAR versions below 8.6.0 are affected by this vulnerability. It is recommended to upgrade to at least version 8.6.0.
What is the root cause of CVE-2026-76362?
This issue stems from unprotected communication between Splunk SOAR and the CyberArk REST server.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.