Search

Find a vulnerability

Search criteria

    20 vulnerabilities found for Splunk by Splunk

    CERTFR-2026-AVI-1056

    Vulnerability from certfr_avis - Published: 2026-08-20 - Updated: 2026-08-20

    De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et une atteinte à la confidentialité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk N/A MS Graph pour Active Directory app pour Splunk SOAR versions antérieures à 1.5.2
    Splunk N/A Venafi app pour Splunk SOAR versions antérieures à 2.1.4
    Splunk Universal Forwarder Splunk Universal Forwarder versions 10.0.x antérieures à 10.0.9
    Splunk N/A AWS IAM app pour Splunk SOAR versions antérieures à 2.1.9
    Splunk N/A Azure AD Graph app pour Splunk SOAR versions antérieures à 2.5.3
    Splunk SOAR Splunk SOAR versions antérieures à 8.6.0
    Splunk Splunk Splunk Connect pour Kafka versions antérieures à 2.2.7
    Splunk Splunk Enterprise Splunk Enterprise versions 9.4.x antérieures à 9.4.14
    Splunk N/A FireAMP versions 2.1.x antérieures à 2.1.15
    Splunk N/A Zoom app pour Splunk SOAR versions antérieures à 3.2.2
    Splunk N/A Phantom app pour Splunk SOAR versions antérieures à 3.8.5
    Splunk Splunk Splunk On-Call (VictorOps) versions antérieures à 1.0.43
    Splunk Splunk Splunk Attack Analyzer Connector pour Splunk SOAR versions 2.2.x antérieures à 2.2.1
    Splunk Splunk Splunk MCP Server app versions antérieures à 1.2.1
    Splunk Splunk Enterprise Splunk Enterprise versions 10.4.x antérieures à 10.4.2
    Splunk N/A AD LDAP app pour Splunk SOAR versions antérieures à 2.3.8
    Splunk Splunk Enterprise Splunk Enterprise versions 10.2.x antérieures à 10.2.6
    Splunk Universal Forwarder Splunk Universal Forwarder versions 9.4.x antérieures à 9.4.14
    Splunk Splunk AI Toolkit Splunk AI Toolkit versions antérieures à 6.0.1
    Splunk Universal Forwarder Splunk Universal Forwarder versions 10.2.x antérieures à 10.2.6
    Splunk N/A Cisco Talos Intelligence pour Enterprise Security Cloud versions antérieures à 1.0.3
    Splunk Splunk Enterprise Splunk Enterprise versions 10.0.x antérieures à 10.0.9
    Splunk N/A CrowdStrike OAuth API app pour Splunk SOAR versions antérieures à 5.1.3
    Splunk Enterprise Security Splunk Enterprise Security versions antérieures à 8.6.1
    Splunk N/A Nmap Scanner versions 3.0.x antérieures à 3.0.15
    Splunk N/A RSA SecurID Authentication Manager app pour Splunk SOAR versions antérieures à 1.0.5
    Splunk N/A Cisco Secure Malware Analytics app pour Splunk SOAR versions antérieures à 2.4.5
    Splunk N/A Cisco Webex app pour Splunk SOAR versions antérieures à 2.2.1
    Splunk Universal Forwarder Splunk Universal Forwarder versions 10.4.x antérieures à 10.4.2
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "MS Graph pour Active Directory app pour Splunk SOAR versions ant\u00e9rieures \u00e0 1.5.2",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Venafi app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.1.4",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Universal Forwarder versions 10.0.x ant\u00e9rieures \u00e0 10.0.9",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "AWS IAM app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.1.9",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Azure AD Graph app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.5.3",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk SOAR versions ant\u00e9rieures \u00e0 8.6.0",
          "product": {
            "name": "SOAR",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Connect pour Kafka versions ant\u00e9rieures \u00e0 2.2.7",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.14",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "FireAMP versions 2.1.x ant\u00e9rieures \u00e0 2.1.15",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Zoom app pour Splunk SOAR versions ant\u00e9rieures \u00e0 3.2.2",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Phantom app pour Splunk SOAR versions ant\u00e9rieures \u00e0 3.8.5",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk On-Call (VictorOps) versions ant\u00e9rieures \u00e0 1.0.43",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Attack Analyzer Connector pour Splunk SOAR versions 2.2.x ant\u00e9rieures \u00e0 2.2.1",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk MCP Server app versions ant\u00e9rieures \u00e0 1.2.1",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.4.x ant\u00e9rieures \u00e0 10.4.2",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "AD LDAP app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.3.8",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.2.x ant\u00e9rieures \u00e0 10.2.6",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.14",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AI Toolkit versions ant\u00e9rieures \u00e0 6.0.1",
          "product": {
            "name": "Splunk AI Toolkit",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Universal Forwarder versions 10.2.x ant\u00e9rieures \u00e0 10.2.6",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Cisco Talos Intelligence pour Enterprise Security Cloud versions ant\u00e9rieures \u00e0 1.0.3",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.9",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "CrowdStrike OAuth API app pour Splunk SOAR versions ant\u00e9rieures \u00e0 5.1.3",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise Security versions ant\u00e9rieures \u00e0 8.6.1",
          "product": {
            "name": "Enterprise Security",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Nmap Scanner versions 3.0.x ant\u00e9rieures \u00e0 3.0.15",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "RSA SecurID Authentication Manager app pour Splunk SOAR versions ant\u00e9rieures \u00e0 1.0.5",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Cisco Secure Malware Analytics app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.4.5",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Cisco Webex app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.2.1",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Universal Forwarder versions 10.4.x ant\u00e9rieures \u00e0 10.4.2",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-26007",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-26007"
        },
        {
          "name": "CVE-2025-13473",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-13473"
        },
        {
          "name": "CVE-2026-76349",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76349"
        },
        {
          "name": "CVE-2026-32597",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32597"
        },
        {
          "name": "CVE-2026-31958",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31958"
        },
        {
          "name": "CVE-2026-76329",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76329"
        },
        {
          "name": "CVE-2026-6474",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6474"
        },
        {
          "name": "CVE-2026-40087",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40087"
        },
        {
          "name": "CVE-2026-6472",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6472"
        },
        {
          "name": "CVE-2026-34180",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34180"
        },
        {
          "name": "CVE-2026-76345",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76345"
        },
        {
          "name": "CVE-2025-67726",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-67726"
        },
        {
          "name": "CVE-2026-76394",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76394"
        },
        {
          "name": "CVE-2026-76383",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76383"
        },
        {
          "name": "CVE-2026-33186",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33186"
        },
        {
          "name": "CVE-2026-76401",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76401"
        },
        {
          "name": "CVE-2026-42766",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42766"
        },
        {
          "name": "CVE-2026-76257",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76257"
        },
        {
          "name": "CVE-2026-32647",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32647"
        },
        {
          "name": "CVE-2026-76324",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76324"
        },
        {
          "name": "CVE-2026-9076",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-9076"
        },
        {
          "name": "CVE-2026-76335",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76335"
        },
        {
          "name": "CVE-2026-76360",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76360"
        },
        {
          "name": "CVE-2026-76393",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76393"
        },
        {
          "name": "CVE-2026-76331",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76331"
        },
        {
          "name": "CVE-2026-76356",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76356"
        },
        {
          "name": "CVE-2026-6479",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6479"
        },
        {
          "name": "CVE-2026-76262",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76262"
        },
        {
          "name": "CVE-2026-1642",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1642"
        },
        {
          "name": "CVE-2026-27651",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27651"
        },
        {
          "name": "CVE-2026-27654",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27654"
        },
        {
          "name": "CVE-2026-76358",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76358"
        },
        {
          "name": "CVE-2026-1285",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1285"
        },
        {
          "name": "CVE-2026-76320",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76320"
        },
        {
          "name": "CVE-2026-27959",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27959"
        },
        {
          "name": "CVE-2026-76342",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76342"
        },
        {
          "name": "CVE-2026-6429",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6429"
        },
        {
          "name": "CVE-2026-40701",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40701"
        },
        {
          "name": "CVE-2026-76402",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76402"
        },
        {
          "name": "CVE-2026-2391",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2391"
        },
        {
          "name": "CVE-2026-76395",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76395"
        },
        {
          "name": "CVE-2026-24737",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24737"
        },
        {
          "name": "CVE-2026-27143",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27143"
        },
        {
          "name": "CVE-2026-76369",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76369"
        },
        {
          "name": "CVE-2026-76386",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76386"
        },
        {
          "name": "CVE-2026-76344",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76344"
        },
        {
          "name": "CVE-2026-2006",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2006"
        },
        {
          "name": "CVE-2026-42946",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42946"
        },
        {
          "name": "CVE-2026-6637",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6637"
        },
        {
          "name": "CVE-2026-21226",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21226"
        },
        {
          "name": "CVE-2024-35255",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-35255"
        },
        {
          "name": "CVE-2026-76312",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76312"
        },
        {
          "name": "CVE-2026-35536",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35536"
        },
        {
          "name": "CVE-2026-76403",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76403"
        },
        {
          "name": "CVE-2026-28755",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28755"
        },
        {
          "name": "CVE-2026-6473",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6473"
        },
        {
          "name": "CVE-2026-76371",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76371"
        },
        {
          "name": "CVE-2026-76313",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76313"
        },
        {
          "name": "CVE-2026-42215",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42215"
        },
        {
          "name": "CVE-2026-2005",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2005"
        },
        {
          "name": "CVE-2026-76327",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76327"
        },
        {
          "name": "CVE-2026-76381",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76381"
        },
        {
          "name": "CVE-2026-7383",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-7383"
        },
        {
          "name": "CVE-2026-25674",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25674"
        },
        {
          "name": "CVE-2026-27144",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27144"
        },
        {
          "name": "CVE-2026-76385",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76385"
        },
        {
          "name": "CVE-2026-32283",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32283"
        },
        {
          "name": "CVE-2026-76364",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76364"
        },
        {
          "name": "CVE-2026-76388",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76388"
        },
        {
          "name": "CVE-2026-42934",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42934"
        },
        {
          "name": "CVE-2026-24043",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24043"
        },
        {
          "name": "CVE-2026-76261",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76261"
        },
        {
          "name": "CVE-2026-45409",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-45409"
        },
        {
          "name": "CVE-2025-53859",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-53859"
        },
        {
          "name": "CVE-2026-76378",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76378"
        },
        {
          "name": "CVE-2026-21860",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21860"
        },
        {
          "name": "CVE-2026-4800",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-4800"
        },
        {
          "name": "CVE-2026-76354",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76354"
        },
        {
          "name": "CVE-2026-76377",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76377"
        },
        {
          "name": "CVE-2026-39883",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-39883"
        },
        {
          "name": "CVE-2026-76321",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76321"
        },
        {
          "name": "CVE-2026-0540",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-0540"
        },
        {
          "name": "CVE-2026-32281",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32281"
        },
        {
          "name": "CVE-2025-6545",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-6545"
        },
        {
          "name": "CVE-2026-76390",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76390"
        },
        {
          "name": "CVE-2026-28389",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28389"
        },
        {
          "name": "CVE-2026-76255",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76255"
        },
        {
          "name": "CVE-2026-33671",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33671"
        },
        {
          "name": "CVE-2026-34515",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34515"
        },
        {
          "name": "CVE-2026-33532",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33532"
        },
        {
          "name": "CVE-2026-76380",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76380"
        },
        {
          "name": "CVE-2026-34519",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34519"
        },
        {
          "name": "CVE-2026-76404",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76404"
        },
        {
          "name": "CVE-2026-76343",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76343"
        },
        {
          "name": "CVE-2026-76254",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76254"
        },
        {
          "name": "CVE-2026-30922",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-30922"
        },
        {
          "name": "CVE-2026-76397",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76397"
        },
        {
          "name": "CVE-2026-76337",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76337"
        },
        {
          "name": "CVE-2026-76326",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76326"
        },
        {
          "name": "CVE-2026-33750",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33750"
        },
        {
          "name": "CVE-2026-76328",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76328"
        },
        {
          "name": "CVE-2026-76359",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76359"
        },
        {
          "name": "CVE-2026-76365",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76365"
        },
        {
          "name": "CVE-2026-1207",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1207"
        },
        {
          "name": "CVE-2026-34986",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34986"
        },
        {
          "name": "CVE-2026-33228",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33228"
        },
        {
          "name": "CVE-2026-76405",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76405"
        },
        {
          "name": "CVE-2026-76253",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76253"
        },
        {
          "name": "CVE-2026-76314",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76314"
        },
        {
          "name": "CVE-2026-76315",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76315"
        },
        {
          "name": "CVE-2026-6638",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6638"
        },
        {
          "name": "CVE-2026-76347",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76347"
        },
        {
          "name": "CVE-2026-34518",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34518"
        },
        {
          "name": "CVE-2026-76382",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76382"
        },
        {
          "name": "CVE-2026-76332",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76332"
        },
        {
          "name": "CVE-2026-76379",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76379"
        },
        {
          "name": "CVE-2026-76376",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76376"
        },
        {
          "name": "CVE-2026-76252",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76252"
        },
        {
          "name": "CVE-2026-27199",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27199"
        },
        {
          "name": "CVE-2026-76336",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76336"
        },
        {
          "name": "CVE-2026-76391",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76391"
        },
        {
          "name": "CVE-2026-22702",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22702"
        },
        {
          "name": "CVE-2026-45447",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-45447"
        },
        {
          "name": "CVE-2026-25679",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25679"
        },
        {
          "name": "CVE-2025-14017",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14017"
        },
        {
          "name": "CVE-2026-76384",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76384"
        },
        {
          "name": "CVE-2026-34525",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34525"
        },
        {
          "name": "CVE-2026-76351",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76351"
        },
        {
          "name": "CVE-2026-76256",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76256"
        },
        {
          "name": "CVE-2026-28388",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28388"
        },
        {
          "name": "CVE-2026-76309",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76309"
        },
        {
          "name": "CVE-2026-6478",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6478"
        },
        {
          "name": "CVE-2026-34601",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34601"
        },
        {
          "name": "CVE-2026-24133",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24133"
        },
        {
          "name": "CVE-2026-1312",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1312"
        },
        {
          "name": "CVE-2026-76367",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76367"
        },
        {
          "name": "CVE-2025-14550",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14550"
        },
        {
          "name": "CVE-2025-66221",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66221"
        },
        {
          "name": "CVE-2026-76322",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76322"
        },
        {
          "name": "CVE-2026-76319",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76319"
        },
        {
          "name": "CVE-2026-76318",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76318"
        },
        {
          "name": "CVE-2026-2950",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2950"
        },
        {
          "name": "CVE-2026-76258",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76258"
        },
        {
          "name": "CVE-2026-42284",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42284"
        },
        {
          "name": "CVE-2026-6475",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6475"
        },
        {
          "name": "CVE-2026-76370",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76370"
        },
        {
          "name": "CVE-2026-76363",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76363"
        },
        {
          "name": "CVE-2026-32280",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32280"
        },
        {
          "name": "CVE-2026-76361",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76361"
        },
        {
          "name": "CVE-2026-76316",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76316"
        },
        {
          "name": "CVE-2026-76330",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76330"
        },
        {
          "name": "CVE-2026-76260",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76260"
        },
        {
          "name": "CVE-2025-69873",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69873"
        },
        {
          "name": "CVE-2026-44244",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-44244"
        },
        {
          "name": "CVE-2026-25940",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25940"
        },
        {
          "name": "CVE-2026-24040",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24040"
        },
        {
          "name": "CVE-2026-76346",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76346"
        },
        {
          "name": "CVE-2026-76373",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76373"
        },
        {
          "name": "CVE-2026-76400",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76400"
        },
        {
          "name": "CVE-2026-76372",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76372"
        },
        {
          "name": "CVE-2026-29181",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-29181"
        },
        {
          "name": "CVE-2026-25755",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25755"
        },
        {
          "name": "CVE-2026-76334",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76334"
        },
        {
          "name": "CVE-2025-15599",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-15599"
        },
        {
          "name": "CVE-2026-28390",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28390"
        },
        {
          "name": "CVE-2026-6477",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6477"
        },
        {
          "name": "CVE-2026-76340",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76340"
        },
        {
          "name": "CVE-2026-76341",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76341"
        },
        {
          "name": "CVE-2026-33672",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33672"
        },
        {
          "name": "CVE-2026-76396",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76396"
        },
        {
          "name": "CVE-2026-76323",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76323"
        },
        {
          "name": "CVE-2026-76368",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76368"
        },
        {
          "name": "CVE-2026-76259",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76259"
        },
        {
          "name": "CVE-2026-76355",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76355"
        },
        {
          "name": "CVE-2026-76375",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76375"
        },
        {
          "name": "CVE-2026-76325",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76325"
        },
        {
          "name": "CVE-2026-76399",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76399"
        },
        {
          "name": "CVE-2026-76392",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76392"
        },
        {
          "name": "CVE-2026-34516",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34516"
        },
        {
          "name": "CVE-2026-27140",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27140"
        },
        {
          "name": "CVE-2026-31789",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31789"
        },
        {
          "name": "CVE-2026-34517",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34517"
        },
        {
          "name": "CVE-2026-25535",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25535"
        },
        {
          "name": "CVE-2026-42945",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42945"
        },
        {
          "name": "CVE-2026-76362",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76362"
        },
        {
          "name": "CVE-2026-76389",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76389"
        },
        {
          "name": "CVE-2026-31938",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31938"
        },
        {
          "name": "CVE-2026-27784",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27784"
        },
        {
          "name": "CVE-2026-76387",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76387"
        },
        {
          "name": "CVE-2026-6276",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6276"
        },
        {
          "name": "CVE-2026-76338",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76338"
        },
        {
          "name": "CVE-2026-28753",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28753"
        },
        {
          "name": "CVE-2026-76374",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76374"
        },
        {
          "name": "CVE-2026-33810",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33810"
        },
        {
          "name": "CVE-2026-34513",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34513"
        },
        {
          "name": "CVE-2026-9256",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-9256"
        },
        {
          "name": "CVE-2026-34514",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34514"
        },
        {
          "name": "CVE-2026-28277",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28277"
        },
        {
          "name": "CVE-2026-26996",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-26996"
        },
        {
          "name": "CVE-2026-1287",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1287"
        },
        {
          "name": "CVE-2026-76339",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76339"
        },
        {
          "name": "CVE-2026-76348",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76348"
        },
        {
          "name": "CVE-2025-14819",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14819"
        },
        {
          "name": "CVE-2026-76353",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76353"
        },
        {
          "name": "CVE-2025-67724",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-67724"
        },
        {
          "name": "CVE-2026-41066",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-41066"
        },
        {
          "name": "CVE-2026-76350",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76350"
        },
        {
          "name": "CVE-2026-34520",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34520"
        },
        {
          "name": "CVE-2026-28684",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28684"
        },
        {
          "name": "CVE-2026-32141",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32141"
        },
        {
          "name": "CVE-2026-76357",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76357"
        },
        {
          "name": "CVE-2026-2004",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2004"
        },
        {
          "name": "CVE-2026-76317",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76317"
        },
        {
          "name": "CVE-2026-31898",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31898"
        },
        {
          "name": "CVE-2026-24001",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24001"
        },
        {
          "name": "CVE-2026-76310",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76310"
        },
        {
          "name": "CVE-2026-76352",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76352"
        },
        {
          "name": "CVE-2026-25673",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25673"
        },
        {
          "name": "CVE-2026-7168",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-7168"
        },
        {
          "name": "CVE-2025-6547",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-6547"
        },
        {
          "name": "CVE-2026-76398",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76398"
        },
        {
          "name": "CVE-2025-67725",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-67725"
        },
        {
          "name": "CVE-2026-29063",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-29063"
        },
        {
          "name": "CVE-2026-76366",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76366"
        },
        {
          "name": "CVE-2025-68428",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68428"
        },
        {
          "name": "CVE-2026-22815",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22815"
        },
        {
          "name": "CVE-2026-76311",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76311"
        },
        {
          "name": "CVE-2026-76263",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76263"
        },
        {
          "name": "CVE-2026-76251",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76251"
        },
        {
          "name": "CVE-2025-13465",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-13465"
        },
        {
          "name": "CVE-2026-40460",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40460"
        },
        {
          "name": "CVE-2026-76333",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-76333"
        },
        {
          "name": "CVE-2026-44243",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-44243"
        },
        {
          "name": "CVE-2026-31790",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31790"
        },
        {
          "name": "CVE-2026-2739",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2739"
        }
      ],
      "initial_release_date": "2026-08-20T00:00:00",
      "last_revision_date": "2026-08-20T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1056",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-08-20T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Injection de code indirecte \u00e0 distance (XSS)"
        },
        {
          "description": "Injection de requ\u00eates ill\u00e9gitimes par rebond (CSRF)"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Injection SQL (SQLi)"
        },
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "D\u00e9ni de service"
        },
        {
          "description": "Falsification de requ\u00eates c\u00f4t\u00e9 serveur (SSRF)"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        },
        {
          "description": "\u00c9l\u00e9vation de privil\u00e8ges"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une \u00e9l\u00e9vation de privil\u00e8ges et une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
      "vendor_advisories": [
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0807",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0807"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0805",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0805"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0803",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0803"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0802",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0802"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0801",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0801"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0808",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0808"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0806",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0806"
        },
        {
          "published_at": "2026-08-19",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0804",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0804"
        }
      ]
    }

    CERTFR-2026-AVI-0774

    Vulnerability from certfr_avis - Published: 2026-06-18 - Updated: 2026-06-18

    De multiples vulnérabilités ont été découvertes dans Splunk AI Toolkit. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk Splunk Splunk AI Toolkit versions antérieures à 5.7.4
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Splunk AI Toolkit versions ant\u00e9rieures \u00e0 5.7.4",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-20265",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-20265"
        },
        {
          "name": "CVE-2026-20266",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-20266"
        }
      ],
      "initial_release_date": "2026-06-18T00:00:00",
      "last_revision_date": "2026-06-18T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0774",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-06-18T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Splunk AI Toolkit. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Splunk AI Toolkit",
      "vendor_advisories": [
        {
          "published_at": "2026-06-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0613",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0613"
        },
        {
          "published_at": "2026-06-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0614",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0614"
        }
      ]
    }

    CERTFR-2026-AVI-0627

    Vulnerability from certfr_avis - Published: 2026-05-21 - Updated: 2026-05-21

    De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk Splunk Enterprise Splunk Enterprise versions 10.2.x antérieures à 10.2.3
    Splunk N/A Splunk AI Toolkit versions 5.7.x antérieures à 5.7.3
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 9.3.2411 antérieures à 9.3.2411.129
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.3.2512 antérieures à 10.3.2512.9
    Splunk Splunk image Docker Splunk versions 10.2.x antérieures à 10.2.2
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.4.2603 antérieures à 10.4.2603.1
    Splunk Splunk AppDynamics Database Agent Splunk AppDynamics Database Agent versions antérieures à 26.4.0
    Splunk Splunk image Docker Splunk versions 9.4.x antérieures à 9.4.10
    Splunk Splunk User Behavior Analytics (UBA) Splunk User Behavior Analytics versions 5.4.x antérieures à 5.4.5
    Splunk Splunk AppDynamics Private Synthetic Agent Splunk AppDynamics Private Synthetic Agent versions antérieures à 26.4.0
    Splunk Splunk AppDynamics Analytics Agent Splunk AppDynamics Analytics Agent versions antérieures à 26.4.0
    Splunk N/A Splunk AppDynamics Cluster Agent versions antérieures à 26.4.0
    Splunk Splunk AppDynamics Machine Agent Splunk AppDynamics Machine Agent versions antérieures à 26.4.0
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.2.2510 antérieures à 10.2.2510.11
    Splunk N/A Splunk AppDynamics Python Agent versions antérieures à 26.4.1
    Splunk Splunk image Docker Splunk versions 10.0.x antérieures à 10.0.5
    Splunk N/A Splunk Add-on for Tomcat versions 3.3.x antérieures à 3.3.1
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.1.2507 antérieures à 10.1.2507.21
    Splunk Splunk Enterprise Splunk Enterprise versions 10.0.x antérieures à 10.0.6
    Splunk N/A Splunk AppDynamics Apache Web Server Agent versions 25.11.x antérieures à 25.11.1
    Splunk Splunk Enterprise Splunk Enterprise versions 9.4.x antérieures à 9.4.11
    Splunk Splunk image Docker Splunk versions 9.3.x antérieures à 9.3.11
    Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.0.2503 antérieures à 10.0.2503.13
    Splunk Universal Forwarder Splunk Universal Forwarder versions 9.4.x antérieures à 9.4.11
    Splunk Splunk Enterprise Splunk Enterprise versions 9.3.x antérieures à 9.3.12
    Splunk Splunk AppDynamics Java Agent Splunk AppDynamics Java Agent versions antérieures à 26.4.0
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Splunk Enterprise versions 10.2.x ant\u00e9rieures \u00e0 10.2.3",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AI Toolkit versions 5.7.x ant\u00e9rieures \u00e0 5.7.3",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 9.3.2411 ant\u00e9rieures \u00e0 9.3.2411.129",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.3.2512 ant\u00e9rieures \u00e0 10.3.2512.9",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "image Docker Splunk versions 10.2.x ant\u00e9rieures \u00e0 10.2.2",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.4.2603 ant\u00e9rieures \u00e0 10.4.2603.1",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Database Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "Splunk AppDynamics Database Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "image Docker Splunk versions 9.4.x ant\u00e9rieures \u00e0 9.4.10",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk User Behavior Analytics versions 5.4.x ant\u00e9rieures \u00e0 5.4.5",
          "product": {
            "name": "Splunk User Behavior Analytics (UBA)",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Private Synthetic Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "Splunk AppDynamics Private Synthetic Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Analytics Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "Splunk AppDynamics Analytics Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Cluster Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Machine Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "Splunk AppDynamics Machine Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.2.2510 ant\u00e9rieures \u00e0 10.2.2510.11",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Python Agent versions ant\u00e9rieures \u00e0 26.4.1",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "image Docker Splunk versions 10.0.x ant\u00e9rieures \u00e0 10.0.5",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Add-on for Tomcat versions 3.3.x ant\u00e9rieures \u00e0 3.3.1",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.1.2507 ant\u00e9rieures \u00e0 10.1.2507.21",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.6",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Apache Web Server Agent versions 25.11.x ant\u00e9rieures \u00e0 25.11.1",
          "product": {
            "name": "N/A",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.11",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "image Docker Splunk versions 9.3.x ant\u00e9rieures \u00e0 9.3.11",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.0.2503 ant\u00e9rieures \u00e0 10.0.2503.13",
          "product": {
            "name": "Splunk Cloud Platform",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.11",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.12",
          "product": {
            "name": "Splunk Enterprise",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Java Agent versions ant\u00e9rieures \u00e0 26.4.0",
          "product": {
            "name": "Splunk AppDynamics Java Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2017-7525",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-7525"
        },
        {
          "name": "CVE-2018-7489",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-7489"
        },
        {
          "name": "CVE-2017-15095",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-15095"
        },
        {
          "name": "CVE-2017-17485",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-17485"
        },
        {
          "name": "CVE-2018-5968",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-5968"
        },
        {
          "name": "CVE-2018-14721",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-14721"
        },
        {
          "name": "CVE-2019-17267",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-17267"
        },
        {
          "name": "CVE-2019-16943",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-16943"
        },
        {
          "name": "CVE-2020-14062",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-14062"
        },
        {
          "name": "CVE-2020-14195",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-14195"
        },
        {
          "name": "CVE-2020-1971",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-1971"
        },
        {
          "name": "CVE-2020-36183",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36183"
        },
        {
          "name": "CVE-2020-25649",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-25649"
        },
        {
          "name": "CVE-2021-20190",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-20190"
        },
        {
          "name": "CVE-2020-36187",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36187"
        },
        {
          "name": "CVE-2020-36188",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36188"
        },
        {
          "name": "CVE-2020-36186",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36186"
        },
        {
          "name": "CVE-2020-36189",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36189"
        },
        {
          "name": "CVE-2020-36185",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36185"
        },
        {
          "name": "CVE-2020-36179",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36179"
        },
        {
          "name": "CVE-2020-36180",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36180"
        },
        {
          "name": "CVE-2020-36182",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36182"
        },
        {
          "name": "CVE-2020-36181",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36181"
        },
        {
          "name": "CVE-2020-36184",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36184"
        },
        {
          "name": "CVE-2021-23358",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-23358"
        },
        {
          "name": "CVE-2020-36242",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36242"
        },
        {
          "name": "CVE-2021-35517",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-35517"
        },
        {
          "name": "CVE-2021-35516",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-35516"
        },
        {
          "name": "CVE-2021-35515",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-35515"
        },
        {
          "name": "CVE-2021-36090",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-36090"
        },
        {
          "name": "CVE-2021-28165",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-28165"
        },
        {
          "name": "CVE-2020-14060",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-14060"
        },
        {
          "name": "CVE-2019-10172",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-10172"
        },
        {
          "name": "CVE-2020-11619",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-11619"
        },
        {
          "name": "CVE-2020-24750",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-24750"
        },
        {
          "name": "CVE-2020-10673",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-10673"
        },
        {
          "name": "CVE-2020-14061",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-14061"
        },
        {
          "name": "CVE-2020-24616",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-24616"
        },
        {
          "name": "CVE-2020-11620",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-11620"
        },
        {
          "name": "CVE-2019-14892",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-14892"
        },
        {
          "name": "CVE-2019-14893",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-14893"
        },
        {
          "name": "CVE-2020-10672",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-10672"
        },
        {
          "name": "CVE-2021-37137",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-37137"
        },
        {
          "name": "CVE-2021-37136",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-37136"
        },
        {
          "name": "CVE-2020-13949",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-13949"
        },
        {
          "name": "CVE-2022-3996",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-3996"
        },
        {
          "name": "CVE-2019-20445",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-20445"
        },
        {
          "name": "CVE-2019-16869",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-16869"
        },
        {
          "name": "CVE-2019-20444",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-20444"
        },
        {
          "name": "CVE-2019-14379",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-14379"
        },
        {
          "name": "CVE-2019-14540",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-14540"
        },
        {
          "name": "CVE-2020-9546",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-9546"
        },
        {
          "name": "CVE-2019-12086",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-12086"
        },
        {
          "name": "CVE-2020-9548",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-9548"
        },
        {
          "name": "CVE-2019-14439",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-14439"
        },
        {
          "name": "CVE-2020-8840",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-8840"
        },
        {
          "name": "CVE-2019-16942",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-16942"
        },
        {
          "name": "CVE-2020-35490",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-35490"
        },
        {
          "name": "CVE-2020-9547",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-9547"
        },
        {
          "name": "CVE-2020-35491",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-35491"
        },
        {
          "name": "CVE-2019-16335",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-16335"
        },
        {
          "name": "CVE-2019-17531",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-17531"
        },
        {
          "name": "CVE-2019-20330",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-20330"
        },
        {
          "name": "CVE-2019-0210",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-0210"
        },
        {
          "name": "CVE-2019-0205",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-0205"
        },
        {
          "name": "CVE-2020-36518",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-36518"
        },
        {
          "name": "CVE-2018-14720",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-14720"
        },
        {
          "name": "CVE-2018-19362",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-19362"
        },
        {
          "name": "CVE-2018-19361",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-19361"
        },
        {
          "name": "CVE-2018-14719",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-14719"
        },
        {
          "name": "CVE-2018-14718",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-14718"
        },
        {
          "name": "CVE-2018-11307",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-11307"
        },
        {
          "name": "CVE-2018-19360",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-19360"
        },
        {
          "name": "CVE-2022-25647",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-25647"
        },
        {
          "name": "CVE-2019-10202",
          "url": "https://www.cve.org/CVERecord?id=CVE-2019-10202"
        },
        {
          "name": "CVE-2022-42003",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-42003"
        },
        {
          "name": "CVE-2022-42004",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-42004"
        },
        {
          "name": "CVE-2022-40149",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-40149"
        },
        {
          "name": "CVE-2022-40150",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-40150"
        },
        {
          "name": "CVE-2022-3171",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-3171"
        },
        {
          "name": "CVE-2022-23491",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-23491"
        },
        {
          "name": "CVE-2023-0286",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0286"
        },
        {
          "name": "CVE-2023-0401",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0401"
        },
        {
          "name": "CVE-2023-0215",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0215"
        },
        {
          "name": "CVE-2023-0217",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0217"
        },
        {
          "name": "CVE-2023-0216",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0216"
        },
        {
          "name": "CVE-2022-4450",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-4450"
        },
        {
          "name": "CVE-2022-3509",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-3509"
        },
        {
          "name": "CVE-2017-7657",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-7657"
        },
        {
          "name": "CVE-2017-7658",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-7658"
        },
        {
          "name": "CVE-2017-7656",
          "url": "https://www.cve.org/CVERecord?id=CVE-2017-7656"
        },
        {
          "name": "CVE-2023-1370",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-1370"
        },
        {
          "name": "CVE-2022-40023",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-40023"
        },
        {
          "name": "CVE-2022-3510",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-3510"
        },
        {
          "name": "CVE-2023-2976",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-2976"
        },
        {
          "name": "CVE-2018-20225",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-20225"
        },
        {
          "name": "CVE-2023-37920",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-37920"
        },
        {
          "name": "CVE-2023-34454",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-34454"
        },
        {
          "name": "CVE-2023-34455",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-34455"
        },
        {
          "name": "CVE-2023-34453",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-34453"
        },
        {
          "name": "CVE-2023-44487",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-44487"
        },
        {
          "name": "CVE-2023-4807",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-4807"
        },
        {
          "name": "CVE-2023-43642",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-43642"
        },
        {
          "name": "CVE-2023-3635",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-3635"
        },
        {
          "name": "CVE-2023-47627",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-47627"
        },
        {
          "name": "CVE-2023-49081",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-49081"
        },
        {
          "name": "CVE-2023-49082",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-49082"
        },
        {
          "name": "CVE-2024-1597",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-1597"
        },
        {
          "name": "CVE-2023-39410",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-39410"
        },
        {
          "name": "CVE-2024-23334",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-23334"
        },
        {
          "name": "CVE-2024-23829",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-23829"
        },
        {
          "name": "CVE-2022-46337",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-46337"
        },
        {
          "name": "CVE-2023-49083",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-49083"
        },
        {
          "name": "CVE-2024-26130",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-26130"
        },
        {
          "name": "CVE-2023-50782",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-50782"
        },
        {
          "name": "CVE-2024-21634",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-21634"
        },
        {
          "name": "CVE-2024-29131",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-29131"
        },
        {
          "name": "CVE-2023-22946",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-22946"
        },
        {
          "name": "CVE-2020-10650",
          "url": "https://www.cve.org/CVERecord?id=CVE-2020-10650"
        },
        {
          "name": "CVE-2025-9232",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-9232"
        },
        {
          "name": "CVE-2025-49844",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-49844"
        },
        {
          "name": "CVE-2025-1948",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-1948"
        },
        {
          "name": "CVE-2025-8291",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-8291"
        },
        {
          "name": "CVE-2025-27553",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-27553"
        },
        {
          "name": "CVE-2024-27306",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-27306"
        },
        {
          "name": "CVE-2024-29857",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-29857"
        },
        {
          "name": "CVE-2024-30251",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-30251"
        },
        {
          "name": "CVE-2024-5535",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-5535"
        },
        {
          "name": "CVE-2024-3651",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-3651"
        },
        {
          "name": "CVE-2024-0397",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-0397"
        },
        {
          "name": "CVE-2024-35195",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-35195"
        },
        {
          "name": "CVE-2024-4068",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-4068"
        },
        {
          "name": "CVE-2024-37891",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-37891"
        },
        {
          "name": "CVE-2024-6345",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-6345"
        },
        {
          "name": "CVE-2025-58057",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58057"
        },
        {
          "name": "CVE-2025-30153",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30153"
        },
        {
          "name": "CVE-2025-58060",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58060"
        },
        {
          "name": "CVE-2025-6075",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-6075"
        },
        {
          "name": "CVE-2025-53057",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-53057"
        },
        {
          "name": "CVE-2025-53066",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-53066"
        },
        {
          "name": "CVE-2025-11226",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11226"
        },
        {
          "name": "CVE-2025-58187",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58187"
        },
        {
          "name": "CVE-2025-58188",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58188"
        },
        {
          "name": "CVE-2025-61723",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61723"
        },
        {
          "name": "CVE-2025-61725",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61725"
        },
        {
          "name": "CVE-2024-39689",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-39689"
        },
        {
          "name": "CVE-2024-41110",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-41110"
        },
        {
          "name": "CVE-2024-7264",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-7264"
        },
        {
          "name": "CVE-2024-34156",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-34156"
        },
        {
          "name": "CVE-2024-34158",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-34158"
        },
        {
          "name": "CVE-2024-24790",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-24790"
        },
        {
          "name": "CVE-2025-9820",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-9820"
        },
        {
          "name": "CVE-2025-52881",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-52881"
        },
        {
          "name": "CVE-2024-7592",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-7592"
        },
        {
          "name": "CVE-2024-9681",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-9681"
        },
        {
          "name": "CVE-2025-58436",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58436"
        },
        {
          "name": "CVE-2025-64505",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-64505"
        },
        {
          "name": "CVE-2025-64506",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-64506"
        },
        {
          "name": "CVE-2025-64720",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-64720"
        },
        {
          "name": "CVE-2025-65018",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-65018"
        },
        {
          "name": "CVE-2025-61729",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61729"
        },
        {
          "name": "CVE-2025-66293",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66293"
        },
        {
          "name": "CVE-2025-13836",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-13836"
        },
        {
          "name": "CVE-2025-12084",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-12084"
        },
        {
          "name": "CVE-2025-66516",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66516"
        },
        {
          "name": "CVE-2025-37731",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-37731"
        },
        {
          "name": "CVE-2025-14174",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14174"
        },
        {
          "name": "CVE-2024-11053",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-11053"
        },
        {
          "name": "CVE-2024-36114",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-36114"
        },
        {
          "name": "CVE-2024-25638",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-25638"
        },
        {
          "name": "CVE-2024-12086",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12086"
        },
        {
          "name": "CVE-2024-12087",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12087"
        },
        {
          "name": "CVE-2024-12088",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12088"
        },
        {
          "name": "CVE-2024-12084",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12084"
        },
        {
          "name": "CVE-2024-47561",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-47561"
        },
        {
          "name": "CVE-2025-0938",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-0938"
        },
        {
          "name": "CVE-2024-12797",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12797"
        },
        {
          "name": "CVE-2024-13176",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-13176"
        },
        {
          "name": "CVE-2025-1795",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-1795"
        },
        {
          "name": "CVE-2024-24791",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-24791"
        },
        {
          "name": "CVE-2024-45337",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45337"
        },
        {
          "name": "CVE-2024-53899",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-53899"
        },
        {
          "name": "CVE-2025-30065",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30065"
        },
        {
          "name": "CVE-2024-12798",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12798"
        },
        {
          "name": "CVE-2024-12801",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12801"
        },
        {
          "name": "CVE-2025-22868",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22868"
        },
        {
          "name": "CVE-2025-22871",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22871"
        },
        {
          "name": "CVE-2025-30204",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30204"
        },
        {
          "name": "CVE-2025-4516",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4516"
        },
        {
          "name": "CVE-2024-55549",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-55549"
        },
        {
          "name": "CVE-2025-24855",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-24855"
        },
        {
          "name": "CVE-2025-22869",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22869"
        },
        {
          "name": "CVE-2025-4517",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4517"
        },
        {
          "name": "CVE-2025-4330",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4330"
        },
        {
          "name": "CVE-2025-4138",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4138"
        },
        {
          "name": "CVE-2024-12718",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-12718"
        },
        {
          "name": "CVE-2025-4435",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4435"
        },
        {
          "name": "CVE-2024-52304",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-52304"
        },
        {
          "name": "CVE-2025-49146",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-49146"
        },
        {
          "name": "CVE-2024-41996",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-41996"
        },
        {
          "name": "CVE-2025-22872",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22872"
        },
        {
          "name": "CVE-2024-47081",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-47081"
        },
        {
          "name": "CVE-2025-4565",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4565"
        },
        {
          "name": "CVE-2025-30749",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30749"
        },
        {
          "name": "CVE-2025-30754",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30754"
        },
        {
          "name": "CVE-2025-30761",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30761"
        },
        {
          "name": "CVE-2025-50059",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-50059"
        },
        {
          "name": "CVE-2025-50106",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-50106"
        },
        {
          "name": "CVE-2024-45339",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45339"
        },
        {
          "name": "CVE-2025-48924",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-48924"
        },
        {
          "name": "CVE-2025-50181",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-50181"
        },
        {
          "name": "CVE-2025-6069",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-6069"
        },
        {
          "name": "CVE-2025-8194",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-8194"
        },
        {
          "name": "CVE-2023-5590",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-5590"
        },
        {
          "name": "CVE-2018-12022",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-12022"
        },
        {
          "name": "CVE-2025-27210",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-27210"
        },
        {
          "name": "CVE-2025-47273",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-47273"
        },
        {
          "name": "CVE-2024-13009",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-13009"
        },
        {
          "name": "CVE-2025-7338",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-7338"
        },
        {
          "name": "CVE-2025-4674",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4674"
        },
        {
          "name": "CVE-2025-47907",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-47907"
        },
        {
          "name": "CVE-2024-58251",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-58251"
        },
        {
          "name": "CVE-2025-46394",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-46394"
        },
        {
          "name": "CVE-2025-46762",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-46762"
        },
        {
          "name": "CVE-2025-9086",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-9086"
        },
        {
          "name": "CVE-2025-68384",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68384"
        },
        {
          "name": "CVE-2025-68390",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68390"
        },
        {
          "name": "CVE-2025-47913",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-47913"
        },
        {
          "name": "CVE-2025-31133",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-31133"
        },
        {
          "name": "CVE-2025-52565",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-52565"
        },
        {
          "name": "CVE-2025-14819",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14819"
        },
        {
          "name": "CVE-2025-67735",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-67735"
        },
        {
          "name": "CVE-2025-66566",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66566"
        },
        {
          "name": "CVE-2025-11187",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11187"
        },
        {
          "name": "CVE-2025-15467",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-15467"
        },
        {
          "name": "CVE-2025-15468",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-15468"
        },
        {
          "name": "CVE-2025-66199",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66199"
        },
        {
          "name": "CVE-2025-68160",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68160"
        },
        {
          "name": "CVE-2025-69418",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69418"
        },
        {
          "name": "CVE-2025-69419",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69419"
        },
        {
          "name": "CVE-2025-69420",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69420"
        },
        {
          "name": "CVE-2025-69421",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69421"
        },
        {
          "name": "CVE-2026-22795",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22795"
        },
        {
          "name": "CVE-2026-22796",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22796"
        },
        {
          "name": "CVE-2025-55130",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-55130"
        },
        {
          "name": "CVE-2025-55131",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-55131"
        },
        {
          "name": "CVE-2025-55132",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-55132"
        },
        {
          "name": "CVE-2025-59464",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-59464"
        },
        {
          "name": "CVE-2025-59465",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-59465"
        },
        {
          "name": "CVE-2025-59466",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-59466"
        },
        {
          "name": "CVE-2026-21637",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21637"
        },
        {
          "name": "CVE-2025-12183",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-12183"
        },
        {
          "name": "CVE-2026-21925",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21925"
        },
        {
          "name": "CVE-2026-21932",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21932"
        },
        {
          "name": "CVE-2026-21933",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21933"
        },
        {
          "name": "CVE-2026-21945",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21945"
        },
        {
          "name": "CVE-2025-66418",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66418"
        },
        {
          "name": "CVE-2025-66471",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-66471"
        },
        {
          "name": "CVE-2026-21441",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21441"
        },
        {
          "name": "CVE-2025-11468",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11468"
        },
        {
          "name": "CVE-2025-15282",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-15282"
        },
        {
          "name": "CVE-2026-0865",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-0865"
        },
        {
          "name": "CVE-2025-28162",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-28162"
        },
        {
          "name": "CVE-2025-28164",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-28164"
        },
        {
          "name": "CVE-2025-68973",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68973"
        },
        {
          "name": "CVE-2026-1861",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1861"
        },
        {
          "name": "CVE-2026-24515",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24515"
        },
        {
          "name": "CVE-2026-25210",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25210"
        },
        {
          "name": "CVE-2025-14831",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-14831"
        },
        {
          "name": "CVE-2026-1584",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1584"
        },
        {
          "name": "CVE-2026-2441",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2441"
        },
        {
          "name": "CVE-2026-2648",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2648"
        },
        {
          "name": "CVE-2026-2649",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2649"
        },
        {
          "name": "CVE-2026-2650",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2650"
        },
        {
          "name": "CVE-2025-68121",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68121"
        },
        {
          "name": "CVE-2026-3061",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3061"
        },
        {
          "name": "CVE-2026-3062",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3062"
        },
        {
          "name": "CVE-2026-3063",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3063"
        },
        {
          "name": "CVE-2025-61726",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61726"
        },
        {
          "name": "CVE-2025-61728",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61728"
        },
        {
          "name": "CVE-2025-61730",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61730"
        },
        {
          "name": "CVE-2025-61731",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61731"
        },
        {
          "name": "CVE-2025-61732",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-61732"
        },
        {
          "name": "CVE-2025-68119",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68119"
        },
        {
          "name": "CVE-2025-13151",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-13151"
        },
        {
          "name": "CVE-2025-68161",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68161"
        },
        {
          "name": "CVE-2026-1225",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1225"
        },
        {
          "name": "CVE-2026-22695",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22695"
        },
        {
          "name": "CVE-2026-22801",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22801"
        },
        {
          "name": "CVE-2026-27171",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27171"
        },
        {
          "name": "CVE-2025-69277",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69277"
        },
        {
          "name": "CVE-2026-0965",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-0965"
        },
        {
          "name": "CVE-2026-0967",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-0967"
        },
        {
          "name": "CVE-2026-0968",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-0968"
        },
        {
          "name": "CVE-2025-47911",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-47911"
        },
        {
          "name": "CVE-2025-58190",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-58190"
        },
        {
          "name": "CVE-2024-29371",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-29371"
        },
        {
          "name": "CVE-2025-69223",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69223"
        },
        {
          "name": "CVE-2025-69225",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69225"
        },
        {
          "name": "CVE-2025-69226",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69226"
        },
        {
          "name": "CVE-2025-69227",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69227"
        },
        {
          "name": "CVE-2025-69228",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69228"
        },
        {
          "name": "CVE-2025-69229",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69229"
        },
        {
          "name": "CVE-2026-22690",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22690"
        },
        {
          "name": "CVE-2026-22691",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22691"
        },
        {
          "name": "CVE-2026-3536",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3536"
        },
        {
          "name": "CVE-2026-3537",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3537"
        },
        {
          "name": "CVE-2026-3538",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3538"
        },
        {
          "name": "CVE-2026-3539",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3539"
        },
        {
          "name": "CVE-2026-3540",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3540"
        },
        {
          "name": "CVE-2026-3541",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3541"
        },
        {
          "name": "CVE-2026-3542",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3542"
        },
        {
          "name": "CVE-2026-3543",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3543"
        },
        {
          "name": "CVE-2026-3544",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3544"
        },
        {
          "name": "CVE-2026-3545",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3545"
        },
        {
          "name": "CVE-2026-25639",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25639"
        },
        {
          "name": "CVE-2026-27141",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27141"
        },
        {
          "name": "CVE-2026-2673",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2673"
        },
        {
          "name": "CVE-2026-22702",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22702"
        },
        {
          "name": "CVE-2026-25679",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25679"
        },
        {
          "name": "CVE-2026-27139",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27139"
        },
        {
          "name": "CVE-2026-27142",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27142"
        },
        {
          "name": "CVE-2026-26007",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-26007"
        },
        {
          "name": "CVE-2026-3731",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-3731"
        },
        {
          "name": "CVE-2026-4111",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-4111"
        },
        {
          "name": "CVE-2026-22732",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22732"
        },
        {
          "name": "CVE-2026-22735",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22735"
        },
        {
          "name": "CVE-2026-22737",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22737"
        },
        {
          "name": "CVE-2026-33186",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33186"
        },
        {
          "name": "CVE-2025-67030",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-67030"
        },
        {
          "name": "CVE-2026-33055",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33055"
        },
        {
          "name": "CVE-2026-33056",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33056"
        },
        {
          "name": "CVE-2026-31790",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31790"
        },
        {
          "name": "CVE-2026-28387",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28387"
        },
        {
          "name": "CVE-2026-28388",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28388"
        },
        {
          "name": "CVE-2026-28389",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28389"
        },
        {
          "name": "CVE-2026-28390",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28390"
        },
        {
          "name": "CVE-2026-31789",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31789"
        },
        {
          "name": "CVE-2026-21710",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21710"
        },
        {
          "name": "CVE-2026-21713",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21713"
        },
        {
          "name": "CVE-2026-21714",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21714"
        },
        {
          "name": "CVE-2026-21715",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21715"
        },
        {
          "name": "CVE-2026-21716",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21716"
        },
        {
          "name": "CVE-2026-33870",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33870"
        },
        {
          "name": "CVE-2026-35469",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35469"
        },
        {
          "name": "CVE-2026-21712",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21712"
        },
        {
          "name": "CVE-2026-21717",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21717"
        },
        {
          "name": "CVE-2026-24688",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-24688"
        },
        {
          "name": "CVE-2026-27024",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27024"
        },
        {
          "name": "CVE-2026-27025",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27025"
        },
        {
          "name": "CVE-2026-27026",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27026"
        },
        {
          "name": "CVE-2026-27628",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27628"
        },
        {
          "name": "CVE-2026-27888",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27888"
        },
        {
          "name": "CVE-2026-28351",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28351"
        },
        {
          "name": "CVE-2026-27456",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27456"
        },
        {
          "name": "CVE-2026-32288",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32288"
        },
        {
          "name": "CVE-2026-33810",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33810"
        },
        {
          "name": "CVE-2026-33871",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33871"
        },
        {
          "name": "CVE-2026-1605",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-1605"
        },
        {
          "name": "CVE-2026-27140",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27140"
        },
        {
          "name": "CVE-2026-27143",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27143"
        },
        {
          "name": "CVE-2026-27144",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27144"
        },
        {
          "name": "CVE-2026-32280",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32280"
        },
        {
          "name": "CVE-2026-32281",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32281"
        },
        {
          "name": "CVE-2026-32282",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32282"
        },
        {
          "name": "CVE-2026-32283",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32283"
        },
        {
          "name": "CVE-2026-32289",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32289"
        },
        {
          "name": "CVE-2025-11143",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11143"
        },
        {
          "name": "CVE-2025-62718",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-62718"
        },
        {
          "name": "CVE-2026-32141",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32141"
        },
        {
          "name": "CVE-2026-33228",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-33228"
        },
        {
          "name": "CVE-2026-34480",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34480"
        },
        {
          "name": "CVE-2026-40175",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40175"
        },
        {
          "name": "CVE-2026-28804",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-28804"
        },
        {
          "name": "CVE-2026-34073",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34073"
        },
        {
          "name": "CVE-2026-39892",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-39892"
        },
        {
          "name": "CVE-2018-12023",
          "url": "https://www.cve.org/CVERecord?id=CVE-2018-12023"
        },
        {
          "name": "CVE-2026-25990",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25990"
        },
        {
          "name": "CVE-2026-40192",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40192"
        },
        {
          "name": "CVE-2026-4424",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-4424"
        },
        {
          "name": "CVE-2026-5121",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-5121"
        },
        {
          "name": "CVE-2022-45868",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-45868"
        },
        {
          "name": "CVE-2023-2251",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-2251"
        },
        {
          "name": "CVE-2023-5408",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-5408"
        },
        {
          "name": "CVE-2024-10220",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-10220"
        },
        {
          "name": "CVE-2024-11079",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-11079"
        },
        {
          "name": "CVE-2024-27308",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-27308"
        },
        {
          "name": "CVE-2024-32650",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-32650"
        },
        {
          "name": "CVE-2024-5321",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-5321"
        },
        {
          "name": "CVE-2024-8775",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-8775"
        },
        {
          "name": "CVE-2025-29774",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-29774"
        },
        {
          "name": "CVE-2025-29775",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-29775"
        },
        {
          "name": "CVE-2025-4432",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-4432"
        },
        {
          "name": "CVE-2025-55159",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-55159"
        },
        {
          "name": "CVE-2025-68156",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68156"
        },
        {
          "name": "CVE-2026-20238",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-20238"
        },
        {
          "name": "CVE-2026-20239",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-20239"
        },
        {
          "name": "CVE-2026-20240",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-20240"
        },
        {
          "name": "CVE-2026-25541",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25541"
        },
        {
          "name": "CVE-2026-25833",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25833"
        },
        {
          "name": "CVE-2026-25834",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25834"
        },
        {
          "name": "CVE-2026-25835",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25835"
        },
        {
          "name": "CVE-2026-27699",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-27699"
        },
        {
          "name": "CVE-2026-32776",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32776"
        },
        {
          "name": "CVE-2026-32777",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32777"
        },
        {
          "name": "CVE-2026-32778",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-32778"
        },
        {
          "name": "CVE-2026-34477",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34477"
        },
        {
          "name": "CVE-2026-34478",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34478"
        },
        {
          "name": "CVE-2026-34871",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34871"
        },
        {
          "name": "CVE-2026-34872",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34872"
        },
        {
          "name": "CVE-2026-34873",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34873"
        },
        {
          "name": "CVE-2026-34874",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34874"
        },
        {
          "name": "CVE-2026-34875",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34875"
        },
        {
          "name": "CVE-2026-34876",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34876"
        },
        {
          "name": "CVE-2026-34877",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34877"
        },
        {
          "name": "CVE-2026-40200",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40200"
        },
        {
          "name": "CVE-2026-41324",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-41324"
        },
        {
          "name": "CVE-2026-42308",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42308"
        },
        {
          "name": "CVE-2026-42309",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42309"
        },
        {
          "name": "CVE-2026-42310",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42310"
        },
        {
          "name": "CVE-2026-42311",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42311"
        },
        {
          "name": "CVE-2026-6042",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6042"
        }
      ],
      "initial_release_date": "2026-05-21T00:00:00",
      "last_revision_date": "2026-05-21T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0627",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-05-21T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
      "vendor_advisories": [
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0512",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0512"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0513",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0513"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0509",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0509"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0510",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0510"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0505",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0505"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0515",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0515"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0507",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0507"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0506",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0506"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0508",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0508"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0504",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0504"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0514",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0514"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0516",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0516"
        },
        {
          "published_at": "2026-05-13",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0501",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0501"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0503",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0503"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0511",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0511"
        },
        {
          "published_at": "2026-05-20",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0502",
          "url": "https://advisory.splunk.com/advisories/SVD-2026-0502"
        }
      ]
    }

    CERTFR-2025-AVI-1063

    Vulnerability from certfr_avis - Published: 2025-12-04 - Updated: 2025-12-04

    De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk Splunk Splunk Enterprise versions 9.4.x antérieures à 9.4.6
    Splunk Splunk Splunk Cloud Platform versions 10.1.2507.x antérieures à 10.1.2507.10
    Splunk Splunk Splunk MCP Server versions 0.2.x antérieures à 0.2.4
    Splunk Splunk Splunk Enterprise versions 10.0.x antérieures à 10.0.2
    Splunk Splunk Splunk Enterprise versions 9.3.x antérieures à 9.3.8
    Splunk Splunk Splunk Enterprise versions 9.2.x antérieures à 9.2.10
    Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.9.x antérieures à 3.9.10
    Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.8.x antérieures à 3.8.58
    Splunk Splunk Splunk Cloud Platform versions 10.0.2503.x antérieures à 10.0.2503.8
    Splunk Splunk Splunk Cloud Platform versions 9.3.2411.x antérieures à 9.3.2411.120
    Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.7.x antérieures à 3.7.28
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.6",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.1.2507.x ant\u00e9rieures \u00e0 10.1.2507.10",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk MCP Server versions 0.2.x ant\u00e9rieures \u00e0 0.2.4",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.2",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.8",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.2.x ant\u00e9rieures \u00e0 9.2.10",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Secure Gateway versions 3.9.x ant\u00e9rieures \u00e0 3.9.10",
          "product": {
            "name": "Splunk Secure Gateway",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Secure Gateway versions 3.8.x ant\u00e9rieures \u00e0 3.8.58",
          "product": {
            "name": "Splunk Secure Gateway",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.0.2503.x ant\u00e9rieures \u00e0 10.0.2503.8",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 9.3.2411.x ant\u00e9rieures \u00e0 9.3.2411.120",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Secure Gateway versions 3.7.x ant\u00e9rieures \u00e0 3.7.28",
          "product": {
            "name": "Splunk Secure Gateway",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-20387",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20387"
        },
        {
          "name": "CVE-2025-20386",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20386"
        },
        {
          "name": "CVE-2025-20382",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20382"
        },
        {
          "name": "CVE-2025-20383",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20383"
        },
        {
          "name": "CVE-2025-20388",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20388"
        },
        {
          "name": "CVE-2025-20384",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20384"
        },
        {
          "name": "CVE-2025-20389",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20389"
        },
        {
          "name": "CVE-2025-20381",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20381"
        },
        {
          "name": "CVE-2025-20385",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20385"
        },
        {
          "name": "CVE-2025-47273",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-47273"
        }
      ],
      "initial_release_date": "2025-12-04T00:00:00",
      "last_revision_date": "2025-12-04T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-1063",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-12-04T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Injection de code indirecte \u00e0 distance (XSS)"
        },
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "Falsification de requ\u00eates c\u00f4t\u00e9 serveur (SSRF)"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
      "vendor_advisories": [
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1205",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1205"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1201",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1201"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1208",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1208"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1204",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1204"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1207",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1207"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1203",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1203"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1206",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1206"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1202",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1202"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1209",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1209"
        },
        {
          "published_at": "2025-12-03",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1210",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1210"
        }
      ]
    }

    CERTFR-2025-AVI-1000

    Vulnerability from certfr_avis - Published: 2025-11-13 - Updated: 2025-11-13

    De multiples vulnérabilités ont été découvertes dans les produits Splunk. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité et un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk Splunk Splunk Enterprise versions 9.4.x antérieures à 9.4.5
    Splunk Splunk Splunk Cloud Platform versions 10.1.2507 antérieures à 10.1.2507.1
    Splunk Splunk Splunk Cloud Platform versions 9.3.2408 antérieures à 9.3.2408.124
    Splunk Splunk Splunk Cloud Platform versions 9.3.2411 antérieures à 9.3.2411.116
    Splunk Splunk Splunk Enterprise versions 10.0.x antérieures à 10.0.1
    Splunk Splunk Splunk Cloud Platform versions 10.0.2503 antérieures à 10.0.2503.5
    Splunk Splunk Splunk Enterprise versions 9.2.x antérieures à 9.2.9
    Splunk Splunk Splunk Enterprise versions 9.3.x antérieures à 9.3.7
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.5",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.1.2507 ant\u00e9rieures \u00e0 10.1.2507.1",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 9.3.2408 ant\u00e9rieures \u00e0 9.3.2408.124",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 9.3.2411 ant\u00e9rieures \u00e0 9.3.2411.116",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.1",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Cloud Platform versions 10.0.2503 ant\u00e9rieures \u00e0 10.0.2503.5",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.2.x ant\u00e9rieures \u00e0 9.2.9",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.7",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-20378",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20378"
        },
        {
          "name": "CVE-2025-52999",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-52999"
        },
        {
          "name": "CVE-2025-20379",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-20379"
        }
      ],
      "initial_release_date": "2025-11-13T00:00:00",
      "last_revision_date": "2025-11-13T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-1000",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-11-13T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Elles permettent \u00e0 un attaquant de provoquer un contournement de la politique de s\u00e9curit\u00e9 et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
      "vendor_advisories": [
        {
          "published_at": "2025-11-12",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1103",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1103"
        },
        {
          "published_at": "2025-11-12",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1102",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1102"
        },
        {
          "published_at": "2025-11-12",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1101",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-1101"
        }
      ]
    }

    CERTFR-2025-AVI-0532

    Vulnerability from certfr_avis - Published: 2025-06-24 - Updated: 2025-06-24

    De multiples vulnérabilités ont été découvertes dans les produits Splunk. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Splunk Universal Forwarder Universal Forwarder versions 9.3.x antérieures à 9.3.4
    Splunk Splunk Operator for Kubernetes Splunk Operator for Kubernetes versions antérieures à 2.8.0
    Splunk Universal Forwarder Universal Forwarder versions 9.2.x antérieures à 9.2.6
    Splunk Splunk Splunk versions 9.3.x antérieures à 9.3.4
    Splunk Universal Forwarder Universal Forwarder versions 9.4.x antérieures à 9.4.2
    Splunk Universal Forwarder Universal Forwarder versions 9.1.x antérieures à 9.1.9
    Splunk Splunk Splunk versions 9.1.x antérieures à 9.1.9
    Splunk Splunk Splunk versions 9.2.x antérieures à 9.2.6
    Splunk Splunk Splunk versions 9.4.x antérieures à 9.4.2
    Splunk Splunk AppDynamics Smart Agent Splunk AppDynamics Smart Agent versions antérieures à 25.5.1
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Universal Forwarder versions 9.3.x ant\u00e9rieures \u00e0 9.3.4",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk Operator for Kubernetes versions ant\u00e9rieures \u00e0 2.8.0",
          "product": {
            "name": "Splunk Operator for Kubernetes",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Universal Forwarder versions 9.2.x ant\u00e9rieures \u00e0 9.2.6",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk versions 9.3.x ant\u00e9rieures \u00e0 9.3.4",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.2",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Universal Forwarder versions 9.1.x ant\u00e9rieures \u00e0 9.1.9",
          "product": {
            "name": "Universal Forwarder",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk versions 9.1.x ant\u00e9rieures \u00e0 9.1.9",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk versions 9.2.x ant\u00e9rieures \u00e0 9.2.6",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk versions 9.4.x ant\u00e9rieures \u00e0 9.4.2",
          "product": {
            "name": "Splunk",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        },
        {
          "description": "Splunk AppDynamics Smart Agent versions ant\u00e9rieures \u00e0 25.5.1",
          "product": {
            "name": "Splunk AppDynamics Smart Agent",
            "vendor": {
              "name": "Splunk",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-24790",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-24790"
        },
        {
          "name": "CVE-2025-22872",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22872"
        },
        {
          "name": "CVE-2024-45341",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45341"
        },
        {
          "name": "CVE-2023-44487",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-44487"
        },
        {
          "name": "CVE-2025-22866",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22866"
        },
        {
          "name": "CVE-2024-45336",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45336"
        },
        {
          "name": "CVE-2024-41110",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-41110"
        },
        {
          "name": "CVE-2025-22871",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22871"
        },
        {
          "name": "CVE-2025-22869",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22869"
        },
        {
          "name": "CVE-2025-22870",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-22870"
        },
        {
          "name": "CVE-2025-30204",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-30204"
        },
        {
          "name": "CVE-2023-42366",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-42366"
        }
      ],
      "initial_release_date": "2025-06-24T00:00:00",
      "last_revision_date": "2025-06-24T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-0532",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-06-24T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Elles permettent \u00e0 un attaquant de provoquer un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
      "vendor_advisories": [
        {
          "published_at": "2025-06-23",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0607",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-0607"
        },
        {
          "published_at": "2025-06-23",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0610",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-0610"
        },
        {
          "published_at": "2025-06-23",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0608",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-0608"
        },
        {
          "published_at": "2025-06-23",
          "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0609",
          "url": "https://advisory.splunk.com/advisories/SVD-2025-0609"
        }
      ]
    }

    CVE-2024-36997 (GCVE-0-2024-36997)

    Vulnerability from cvelistv5 – Published: 2024-07-01 16:57 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Persistent Cross-site Scripting (XSS) in conf-web/settings REST endpoint
    Summary
    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312, an admin user could store and execute arbitrary JavaScript code in the browser context of another Splunk user through the conf-web/settings REST endpoint. This could potentially cause a persistent cross-site scripting (XSS) exploit.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-03 14:17 UTC
    CWE
    • CWE-79 - The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
    Create a notification for this product.
    Splunk Splunk Cloud Platform Affected: 9.1.2312 , < 9.1.2312.100 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk splunk_cloud_platform Affected: 9.1.2312 , < 9.1.2312.100 (custom)
        cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2024-07-01 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.2.2",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.5",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.0.10",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk_cloud_platform",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.1.2312.100",
                    "status": "affected",
                    "version": "9.1.2312",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-36997",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-03T14:17:17.349360Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-15T17:32:06.701Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T03:43:50.623Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0717"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/ed1209ef-228d-4dab-9856-be9369925a5c"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.2",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.5",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.10",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Splunk Cloud Platform",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.1.2312.100",
                  "status": "affected",
                  "version": "9.1.2312",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "ST\u00d6K / Fredrik Alexandersson"
            }
          ],
          "datePublic": "2024-07-01T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312, an admin user could store and execute arbitrary JavaScript code in the browser context of another Splunk user through the conf-web/settings REST endpoint. This could potentially cause a persistent cross-site scripting (XSS) exploit."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312, an admin user could store and execute arbitrary JavaScript code in the browser context of another Splunk user through the conf-web/settings REST endpoint. This could potentially cause a persistent cross-site scripting (XSS) exploit."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 4.6,
                "baseSeverity": "MEDIUM",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:50.355Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0717"
            },
            {
              "url": "https://research.splunk.com/application/ed1209ef-228d-4dab-9856-be9369925a5c"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0717"
          },
          "title": "Persistent Cross-site Scripting (XSS) in conf-web/settings REST endpoint"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-36997",
        "datePublished": "2024-07-01T16:57:47.904Z",
        "dateReserved": "2024-05-30T16:36:21.002Z",
        "dateUpdated": "2025-02-28T11:03:50.355Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-36991 (GCVE-0-2024-36991)

    Vulnerability from cvelistv5 – Published: 2024-07-01 16:31 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Path Traversal on the “/modules/messaging/“ endpoint in Splunk Enterprise on Windows
    Summary
    In Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10, an attacker could perform a path traversal on the /modules/messaging/ endpoint in Splunk Enterprise on Windows. This vulnerability should only affect Splunk Enterprise on Windows.
    SSVC
    Exploitation: poc Automatable: yes Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-01 20:11 UTC
    CWE
    • CWE-35 - The software uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize '.../...//' (doubled triple dot slash) sequences that can resolve to a location that is outside of that directory.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.0.0 , < 9.0.10 (custom)
        cpe:2.3:a:splunk:splunk:9.0.0:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk splunk Affected: 9.1.0 , < 9.1.5 (custom)
        cpe:2.3:a:splunk:splunk:9.1.0:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk splunk Affected: 9.2 , < 9.2.2 (custom)
        cpe:2.3:a:splunk:splunk:9.2:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2024-07-01 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:9.0.0:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.10",
                    "status": "affected",
                    "version": "9.0.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:9.1.0:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.1.5",
                    "status": "affected",
                    "version": "9.1.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:9.2:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.2.2",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-36991",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-01T20:11:28.292396Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-15T17:33:58.869Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T03:43:50.583Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0711"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/e7c2b064-524e-4d65-8002-efce808567aa"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.2",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.5",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.10",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Danylo Dmytriiev (DDV_UA)"
            }
          ],
          "datePublic": "2024-07-01T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10, an attacker could perform a path traversal on the /modules/messaging/ endpoint in Splunk Enterprise on Windows. This vulnerability should only affect Splunk Enterprise on Windows."
                }
              ],
              "value": "In Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10, an attacker could perform a path traversal on the /modules/messaging/ endpoint in Splunk Enterprise on Windows. This vulnerability should only affect Splunk Enterprise on Windows."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-35",
                  "description": "The software uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize \u0027.../...//\u0027 (doubled triple dot slash) sequences that can resolve to a location that is outside of that directory.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:48.685Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0711"
            },
            {
              "url": "https://research.splunk.com/application/e7c2b064-524e-4d65-8002-efce808567aa"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0711"
          },
          "title": "Path Traversal on the \u201c/modules/messaging/\u201c endpoint in Splunk Enterprise on Windows"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-36991",
        "datePublished": "2024-07-01T16:31:03.563Z",
        "dateReserved": "2024-05-30T16:36:21.001Z",
        "dateUpdated": "2025-02-28T11:03:48.685Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-36985 (GCVE-0-2024-36985)

    Vulnerability from cvelistv5 – Published: 2024-07-01 16:30 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Remote Code Execution (RCE) through an external lookup due to “copybuckets.py“ script in the “splunk_archiver“ application in Splunk Enterprise
    Summary
    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10, a low-privileged user that does not hold the admin or power Splunk roles could cause a Remote Code Execution through an external lookup that references the “splunk_archiver“ application.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-10 03:55 UTC
    CWE
    • CWE-687 - The software calls a function, procedure, or routine, but the caller specifies an argument that contains the wrong value, which may lead to resultant weaknesses.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    Date Public
    2024-07-01 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.2.2",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.5",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.0.10",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-36985",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-10T03:55:21.225866Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-15T17:35:12.283Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T03:43:50.397Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0705"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/8598f9de-bba8-42a4-8ef0-12e1adda4131"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.2",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.5",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.10",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Alex Hordijk"
            }
          ],
          "datePublic": "2024-07-01T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10, a low-privileged user that does not hold the admin or power Splunk roles could cause a Remote Code Execution through an external lookup that references the \u201csplunk_archiver\u201c application."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10, a low-privileged user that does not hold the admin or power Splunk roles could cause a Remote Code Execution through an external lookup that references the \u201csplunk_archiver\u201c application."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-687",
                  "description": "The software calls a function, procedure, or routine, but the caller specifies an argument that contains the wrong value, which may lead to resultant weaknesses.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:58.932Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0705"
            },
            {
              "url": "https://research.splunk.com/application/8598f9de-bba8-42a4-8ef0-12e1adda4131"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0705"
          },
          "title": "Remote Code Execution (RCE) through an external lookup due to \u201ccopybuckets.py\u201c script in the \u201csplunk_archiver\u201c application in Splunk Enterprise"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-36985",
        "datePublished": "2024-07-01T16:30:57.461Z",
        "dateReserved": "2024-05-30T16:36:20.999Z",
        "dateUpdated": "2025-02-28T11:03:58.932Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-36983 (GCVE-0-2024-36983)

    Vulnerability from cvelistv5 – Published: 2024-07-01 16:30 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Command Injection using External Lookups
    Summary
    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authenticated user could use this internal function to insert code into the Splunk platform installation directory. From there, the user could execute arbitrary code on the Splunk platform Instance.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-02 20:10 UTC
    CWE
    • CWE-77 - The software constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
    Create a notification for this product.
    Splunk Splunk Cloud Platform Affected: 9.1.2312 , < 9.1.2312.109 (custom)
    Affected: 9.1.2308 , < 9.1.2308.207 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.2 , < 9.2.2 (custom)
    Affected: 9.1 , < 9.1.5 (custom)
    Affected: 9.0 , < 9.0.10 (custom)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk splunk_cloud_platform Affected: 9.1.2312 , < 9.1.2312.109 (custom)
    Affected: 9.1.2308 , < 9.1.2308.207 (custom)
        cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2024-07-01 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.2.2",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.5",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.0.10",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk_cloud_platform",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.1.2312.109",
                    "status": "affected",
                    "version": "9.1.2312",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.2308.207",
                    "status": "affected",
                    "version": "9.1.2308",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-36983",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-02T20:10:58.843878Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-15T17:36:43.524Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T03:43:50.454Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0703"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/1cf58ae1-9177-40b8-a26c-8966040f11ae/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.2",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.5",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.10",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Splunk Cloud Platform",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.1.2312.109",
                  "status": "affected",
                  "version": "9.1.2312",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.2308.207",
                  "status": "affected",
                  "version": "9.1.2308",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Danylo Dmytriiev (DDV_UA)"
            }
          ],
          "datePublic": "2024-07-01T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authenticated user could use this internal function to insert code into the Splunk platform installation directory. From there, the user could execute arbitrary code on the Splunk platform Instance."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authenticated user could use this internal function to insert code into the Splunk platform installation directory. From there, the user could execute arbitrary code on the Splunk platform Instance."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-77",
                  "description": "The software constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:59.649Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0703"
            },
            {
              "url": "https://research.splunk.com/application/1cf58ae1-9177-40b8-a26c-8966040f11ae/"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0703"
          },
          "title": "Command Injection using External Lookups"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-36983",
        "datePublished": "2024-07-01T16:30:41.779Z",
        "dateReserved": "2024-05-30T16:36:20.999Z",
        "dateUpdated": "2025-02-28T11:03:59.649Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-29945 (GCVE-0-2024-29945)

    Vulnerability from cvelistv5 – Published: 2024-03-27 16:16 – Updated: 2025-12-16 18:13
    VLAI
    Title
    Splunk Authentication Token Exposure in Debug Log in Splunk Enterprise
    Summary
    In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the software potentially exposes authentication tokens during the token validation process. This exposure happens when either Splunk Enterprise runs in debug mode or the JsonWebToken component has been configured to log its activity at the DEBUG logging level.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-03-30 04:00 UTC
    CWE
    • CWE-532 - Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.1 (custom)
    Affected: 9.1 , < 9.1.4 (custom)
    Affected: 9.0 , < 9.0.9 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.0 , < 9.0.9 (semver)
    Affected: 9.1 , < 9.1.4 (semver)
    Affected: 9.2 , < 9.2.1 (semver)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    Date Public
    2024-03-27 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.9",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.4",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.2.1",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.9",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.4",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.2.1",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.9",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.4",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.2.1",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-29945",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-03-30T04:00:56.387638Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-12-16T18:13:23.577Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T01:17:58.535Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0301"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/9a67e749-d291-40dd-8376-d422e7ecf8b5"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.1",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.4",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.9",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Alex Napier, Splunk"
            }
          ],
          "datePublic": "2024-03-27T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the software potentially exposes authentication tokens during the token validation process. This exposure happens when either Splunk Enterprise runs in debug mode or the JsonWebToken component has been configured to log its activity at the DEBUG logging level."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the software potentially exposes authentication tokens during the token validation process. This exposure happens when either Splunk Enterprise runs in debug mode or the JsonWebToken component has been configured to log its activity at the DEBUG logging level."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-532",
                  "description": "Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:43.081Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0301"
            },
            {
              "url": "https://research.splunk.com/application/9a67e749-d291-40dd-8376-d422e7ecf8b5"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0301"
          },
          "title": "Splunk Authentication Token Exposure in Debug Log in Splunk Enterprise"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-29945",
        "datePublished": "2024-03-27T16:16:00.974Z",
        "dateReserved": "2024-03-21T21:09:44.795Z",
        "dateUpdated": "2025-12-16T18:13:23.577Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2024-29946 (GCVE-0-2024-29946)

    Vulnerability from cvelistv5 – Published: 2024-03-27 16:15 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Risky command safeguards bypass in Dashboard Examples Hub
    Summary
    In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the Dashboard Examples Hub lacks protections for risky SPL commands. This could let attackers bypass SPL safeguards for risky commands in the Hub. The vulnerability would require the attacker to phish the victim by tricking them into initiating a request within their browser.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-03-30 04:00 UTC
    CWE
    • CWE-20 - The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.2 , < 9.2.1 (custom)
    Affected: 9.1 , < 9.1.4 (custom)
    Affected: 9.0 , < 9.0.9 (custom)
    Create a notification for this product.
    Splunk Splunk Cloud Platform Affected: - , < 9.1.2312.104 (custom)
    Affected: - , < 9.1.2308.205 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.2 , < 9.2.1 (custom)
    Affected: 9.1 , < 9.1.4 (custom)
    Affected: 9.0 , < 9.0.9 (custom)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk cloud Affected: 0 , < 9.1.2312.104 (custom)
    Affected: 0 , < 9.1.2308.205 (custom)
        cpe:2.3:a:splunk:cloud:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2024-03-27 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T01:17:58.609Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2024-0302"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/1cf58ae1-9177-40b8-a26c-8966040f11ae/"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.2.1",
                    "status": "affected",
                    "version": "9.2",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.4",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.0.9",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:cloud:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "cloud",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.1.2312.104",
                    "status": "affected",
                    "version": "0",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "9.1.2308.205",
                    "status": "affected",
                    "version": "0",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-29946",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-03-30T04:00:57.413620Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-15T17:38:11.296Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.2.1",
                  "status": "affected",
                  "version": "9.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.4",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.9",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Splunk Cloud Platform",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.1.2312.104",
                  "status": "affected",
                  "version": "-",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.2308.205",
                  "status": "affected",
                  "version": "-",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "datePublic": "2024-03-27T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the Dashboard Examples Hub lacks protections for risky SPL commands. This could let attackers bypass SPL safeguards for risky commands in the Hub. The vulnerability would require the attacker to phish the victim by tricking them into initiating a request within their browser."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the Dashboard Examples Hub lacks protections for risky SPL commands. This could let attackers bypass SPL safeguards for risky commands in the Hub. The vulnerability would require the attacker to phish the victim by tricking them into initiating a request within their browser."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.1,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-20",
                  "description": "The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:53.749Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2024-0302"
            },
            {
              "url": "https://research.splunk.com/application/1cf58ae1-9177-40b8-a26c-8966040f11ae/"
            }
          ],
          "source": {
            "advisory": "SVD-2024-0302"
          },
          "title": "Risky command safeguards bypass in Dashboard Examples Hub"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2024-29946",
        "datePublished": "2024-03-27T16:15:59.872Z",
        "dateReserved": "2024-03-21T21:09:44.795Z",
        "dateUpdated": "2025-02-28T11:03:53.749Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2023-46213 (GCVE-0-2023-46213)

    Vulnerability from cvelistv5 – Published: 2023-11-16 20:15 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Cross-site Scripting (XSS) on “Show Syntax Highlighted” View in Search Page
    Summary
    In Splunk Enterprise versions below 9.0.7 and 9.1.2, ineffective escaping in the “Show syntax Highlighted” feature can result in the execution of unauthorized code in a user’s web browser.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-05-20 19:29 UTC
    CWE
    • CWE-79 - The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 9.0 , < 9.0.7 (custom)
    Affected: 9.1 , < 9.1.2 (custom)
    Create a notification for this product.
    Splunk Splunk Cloud Affected: - , < 9.1.2308 (custom)
    Create a notification for this product.
    splunk splunk Affected: 9.0 , < 9.0.7 (semver)
    Affected: 9.1 , < 9.1.2 (semver)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk splunk_cloud_platform Affected: - , < 9.1.2308 (semver)
        cpe:2.3:a:splunk:splunk_cloud_platform:-:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2023-11-16 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.7",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.2",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk_cloud_platform:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk_cloud_platform",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.1.2308",
                    "status": "affected",
                    "version": "-",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2023-46213",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-05-20T19:29:45.410405Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-04T17:22:11.523Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T20:37:40.176Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2023-1103"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/1030bc63-0b37-4ac9-9ae0-9361c955a3cc/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.0.7",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.2",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Splunk Cloud",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.1.2308",
                  "status": "affected",
                  "version": "-",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Joshua Neubecker"
            }
          ],
          "datePublic": "2023-11-16T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.0.7 and 9.1.2, ineffective escaping in the \u201cShow syntax Highlighted\u201d feature can result in the execution of unauthorized code in a user\u2019s web browser."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.0.7 and 9.1.2, ineffective escaping in the \u201cShow syntax Highlighted\u201d feature can result in the execution of unauthorized code in a user\u2019s web browser."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 4.8,
                "baseSeverity": "MEDIUM",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:42.823Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2023-1103"
            },
            {
              "url": "https://research.splunk.com/application/1030bc63-0b37-4ac9-9ae0-9361c955a3cc/"
            }
          ],
          "source": {
            "advisory": "SVD-2023-1103"
          },
          "title": "Cross-site Scripting (XSS) on \u201cShow Syntax Highlighted\u201d View in Search Page"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2023-46213",
        "datePublished": "2023-11-16T20:15:46.739Z",
        "dateReserved": "2023-10-18T17:02:51.235Z",
        "dateUpdated": "2025-02-28T11:03:42.823Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2023-40596 (GCVE-0-2023-40596)

    Vulnerability from cvelistv5 – Published: 2023-08-30 16:19 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Splunk Enterprise on Windows Privilege Escalation due to Insecure OPENSSLDIR Build Definition Reference in DLL
    Summary
    In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk Enterprise references an insecure path for the OPENSSLDIR build definition. An attacker can abuse this reference and subsequently install malicious code to achieve privilege escalation on the Windows machine.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-05-20 19:34 UTC
    CWE
    • CWE-665 - The software does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 8.2 , < 8.2.12 (custom)
    Affected: 9.0 , < 9.0.6 (custom)
    Affected: 9.1 , < 9.1.1 (custom)
    Create a notification for this product.
    splunk splunk Affected: 8.2 , < 8.2.12 (semver)
    Affected: 9.0 , < 9.0.6 (semver)
    Affected: 9.1 , < 9.1.1 (semver)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    Date Public
    2023-08-30 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "8.2.12",
                    "status": "affected",
                    "version": "8.2",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.0.6",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.1",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2023-40596",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-05-20T19:34:18.026500Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-04T17:19:00.590Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T18:38:50.903Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2023-0805"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "8.2.12",
                  "status": "affected",
                  "version": "8.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.6",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.1",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Will Dormann, Vul Labs"
            }
          ],
          "datePublic": "2023-08-30T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk Enterprise references an insecure path for the OPENSSLDIR build definition. An attacker can abuse this reference and subsequently install malicious code to achieve privilege escalation on the Windows machine."
                }
              ],
              "value": "In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk Enterprise references an insecure path for the OPENSSLDIR build definition. An attacker can abuse this reference and subsequently install malicious code to achieve privilege escalation on the Windows machine."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-665",
                  "description": "The software does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:54.197Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2023-0805"
            }
          ],
          "source": {
            "advisory": "SVD-2023-0805"
          },
          "title": "Splunk Enterprise on Windows Privilege Escalation due to Insecure OPENSSLDIR Build Definition Reference in DLL"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2023-40596",
        "datePublished": "2023-08-30T16:19:43.630Z",
        "dateReserved": "2023-08-16T22:07:52.838Z",
        "dateUpdated": "2025-02-28T11:03:54.197Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2023-32712 (GCVE-0-2023-32712)

    Vulnerability from cvelistv5 – Published: 2023-06-01 16:34 – Updated: 2025-02-28 11:03
    VLAI
    Title
    Unauthenticated Log Injection in Splunk Enterprise
    Summary
    In Splunk Enterprise versions below 9.1.0.2, 9.0.5.1, and 8.2.11.2, an attacker can inject American National Standards Institute (ANSI) escape codes into Splunk log files that, when a vulnerable terminal application reads them, can potentially, at worst, result in possible code execution in the vulnerable application. This attack requires a user to use a terminal application that supports the translation of ANSI escape codes to read the malicious log file locally in the vulnerable terminal, and to perform additional user interaction to exploit. Universal Forwarder versions 9.1.0.1, 9.0.5, 8.2.11, and lower can be vulnerable in situations where they have management services active and accessible over the network. Universal Forwarder versions 9.0.x and 9.1.x bind management services to the local machine and are not vulnerable in this specific configuration. See SVD-2022-0605 for more information. Universal Forwarder versions 9.1 use Unix Domain Sockets (UDS) for communication, which further reduces the potential attack surface. The vulnerability does not directly affect Splunk Enterprise or Universal Forwarder. The indirect impact on Splunk Enterprise and Universal Forwarder can vary significantly depending on the permissions in the vulnerable terminal application and where and how the user reads the malicious log file. For example, users can copy the malicious file from the Splunk Enterprise instance and read it on their local machine.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-05-20 19:25 UTC
    CWE
    • CWE-117 - The software does not neutralize or incorrectly neutralizes output that is written to logs.
    • CWE-117 - Improper Output Neutralization for Logs
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 8.2 , < 8.2.11.2 (custom)
    Affected: 9.0 , < 9.0.5.1 (custom)
    Affected: 9.1 , < 9.1.0.2 (custom)
    Create a notification for this product.
    Splunk Universal Forwarder Affected: 8.2 , < 8.2.12 (custom)
    Affected: 9.0 , < 9.0.6 (custom)
    Affected: 9.1 , < 9.1.1 (custom)
    Create a notification for this product.
    splunk splunk Affected: 8.2 , < 8.2.11.2 (semver)
    Affected: 9.0 , < 9.0.5.1 (semver)
    Affected: 9.1 , < 9.1.0.2 (semver)
        cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
    Create a notification for this product.
    splunk universal_forwarder Affected: 8.2 , < 8.2.12 (semver)
    Affected: 9.0 , < 9.0.6 (semver)
    Affected: 9.1 , < 9.1.1 (semver)
        cpe:2.3:a:splunk:universal_forwarder:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2023-06-01 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "8.2.11.2",
                    "status": "affected",
                    "version": "8.2",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.0.5.1",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.0.2",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:universal_forwarder:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "universal_forwarder",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "8.2.12",
                    "status": "affected",
                    "version": "8.2",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.0.6",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.1.1",
                    "status": "affected",
                    "version": "9.1",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2023-32712",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-05-20T19:25:54.346712Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-117",
                    "description": "CWE-117 Improper Output Neutralization for Logs",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-04T17:26:05.760Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T15:25:36.767Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2023-0606"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/de3908dc-1298-446d-84b9-fa81d37e959b"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "8.2.11.2",
                  "status": "affected",
                  "version": "8.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.5.1",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.0.2",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Universal Forwarder",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "8.2.12",
                  "status": "affected",
                  "version": "8.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.6",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.1.1",
                  "status": "affected",
                  "version": "9.1",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "ST\u00d6K / Fredrik Alexandersson"
            }
          ],
          "datePublic": "2023-06-01T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 9.1.0.2, 9.0.5.1, and 8.2.11.2, an attacker can inject American National Standards Institute (ANSI) escape codes into Splunk log files that, when a vulnerable terminal application reads them, can potentially, at worst, result in possible code execution in the vulnerable application. This attack requires a user to use a terminal application that supports the translation of ANSI escape codes to read the malicious log file locally in the vulnerable terminal, and to perform additional user interaction to exploit.\nUniversal Forwarder versions 9.1.0.1, 9.0.5, 8.2.11, and lower can be vulnerable in situations where they have management services active and accessible over the network. Universal Forwarder versions 9.0.x and 9.1.x bind management services to the local machine and are not vulnerable in this specific configuration. See SVD-2022-0605 for more information. Universal Forwarder versions 9.1 use Unix Domain Sockets (UDS) for communication, which further reduces the potential attack surface.\nThe vulnerability does not directly affect Splunk Enterprise or Universal Forwarder. The indirect impact on Splunk Enterprise and Universal Forwarder can vary significantly depending on the permissions in the vulnerable terminal application and where and how the user reads the malicious log file. For example, users can copy the malicious file from the Splunk Enterprise instance and read it on their local machine."
                }
              ],
              "value": "In Splunk Enterprise versions below 9.1.0.2, 9.0.5.1, and 8.2.11.2, an attacker can inject American National Standards Institute (ANSI) escape codes into Splunk log files that, when a vulnerable terminal application reads them, can potentially, at worst, result in possible code execution in the vulnerable application. This attack requires a user to use a terminal application that supports the translation of ANSI escape codes to read the malicious log file locally in the vulnerable terminal, and to perform additional user interaction to exploit.\nUniversal Forwarder versions 9.1.0.1, 9.0.5, 8.2.11, and lower can be vulnerable in situations where they have management services active and accessible over the network. Universal Forwarder versions 9.0.x and 9.1.x bind management services to the local machine and are not vulnerable in this specific configuration. See SVD-2022-0605 for more information. Universal Forwarder versions 9.1 use Unix Domain Sockets (UDS) for communication, which further reduces the potential attack surface.\nThe vulnerability does not directly affect Splunk Enterprise or Universal Forwarder. The indirect impact on Splunk Enterprise and Universal Forwarder can vary significantly depending on the permissions in the vulnerable terminal application and where and how the user reads the malicious log file. For example, users can copy the malicious file from the Splunk Enterprise instance and read it on their local machine."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.6,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-117",
                  "description": "The software does not neutralize or incorrectly neutralizes output that is written to logs.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:57.287Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2023-0606"
            },
            {
              "url": "https://research.splunk.com/application/de3908dc-1298-446d-84b9-fa81d37e959b"
            }
          ],
          "source": {
            "advisory": "SVD-2023-0606"
          },
          "title": "Unauthenticated Log Injection in Splunk Enterprise"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2023-32712",
        "datePublished": "2023-06-01T16:34:29.862Z",
        "dateReserved": "2023-05-11T20:55:59.872Z",
        "dateUpdated": "2025-02-28T11:03:57.287Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2023-22934 (GCVE-0-2023-22934)

    Vulnerability from cvelistv5 – Published: 2023-02-14 17:22 – Updated: 2025-02-28 11:03
    VLAI
    Title
    SPL Command Safeguards Bypass via the ‘pivot’ SPL Command in Splunk Enterprise
    Summary
    In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘pivot’ search processing language (SPL) command lets a search bypass SPL safeguards for risky commands using a saved search job. The vulnerability requires an authenticated user to craft the saved job and a higher privileged user to initiate a request within their browser.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-02-13 20:46 UTC
    CWE
    • CWE-20 - The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program.
    • CWE-20 - Improper Input Validation
    Assigner
    Impacted products
    Vendor Product Version
    Splunk Splunk Enterprise Affected: 8.1 , < 8.1.13 (custom)
    Affected: 8.2 , < 8.2.10 (custom)
    Affected: 9.0 , < 9.0.4 (custom)
    Create a notification for this product.
    Splunk Splunk Cloud Platform Affected: - , < 9.0.2209.3 (custom)
    Create a notification for this product.
    splunk splunk Affected: 8.1 , < 8.1.13 (semver)
    Affected: 8.2 , < 8.2.10 (semver)
    Affected: 9.0 , < 9.0.4 (semver)
        cpe:2.3:a:splunk:splunk:*:*:*:*:*:*:*:*
    Create a notification for this product.
    splunk splunk_cloud_platform Affected: - , < 9.0.2209.3 (semver)
        cpe:2.3:a:splunk:splunk_cloud_platform:-:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2023-02-14 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "8.1.13",
                    "status": "affected",
                    "version": "8.1",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "8.2.10",
                    "status": "affected",
                    "version": "8.2",
                    "versionType": "semver"
                  },
                  {
                    "lessThan": "9.0.4",
                    "status": "affected",
                    "version": "9.0",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:splunk:splunk_cloud_platform:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "splunk_cloud_platform",
                "vendor": "splunk",
                "versions": [
                  {
                    "lessThan": "9.0.2209.3",
                    "status": "affected",
                    "version": "-",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2023-22934",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-02-13T20:46:42.856991Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-20",
                    "description": "CWE-20 Improper Input Validation",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-18T18:36:23.394Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T10:20:31.425Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisory.splunk.com/advisories/SVD-2023-0204"
              },
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://research.splunk.com/application/ee69374a-d27e-4136-adac-956a96ff60fd"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Splunk Enterprise",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "8.1.13",
                  "status": "affected",
                  "version": "8.1",
                  "versionType": "custom"
                },
                {
                  "lessThan": "8.2.10",
                  "status": "affected",
                  "version": "8.2",
                  "versionType": "custom"
                },
                {
                  "lessThan": "9.0.4",
                  "status": "affected",
                  "version": "9.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Splunk Cloud Platform",
              "vendor": "Splunk",
              "versions": [
                {
                  "lessThan": "9.0.2209.3",
                  "status": "affected",
                  "version": "-",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "Anton (therceman)"
            }
          ],
          "datePublic": "2023-02-14T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the \u2018pivot\u2019 search processing language (SPL) command lets a search bypass SPL safeguards for risky commands using a saved search job. The vulnerability requires an authenticated user to craft the saved job and a higher privileged user to initiate a request within their browser."
                }
              ],
              "value": "In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the \u2018pivot\u2019 search processing language (SPL) command lets a search bypass SPL safeguards for risky commands using a saved search job. The vulnerability requires an authenticated user to craft the saved job and a higher privileged user to initiate a request within their browser."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.3,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-20",
                  "description": "The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program.",
                  "lang": "en",
                  "type": "cwe"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-02-28T11:03:58.707Z",
            "orgId": "42b59230-ec95-491e-8425-5a5befa1a469",
            "shortName": "Splunk"
          },
          "references": [
            {
              "url": "https://advisory.splunk.com/advisories/SVD-2023-0204"
            },
            {
              "url": "https://research.splunk.com/application/ee69374a-d27e-4136-adac-956a96ff60fd"
            }
          ],
          "source": {
            "advisory": "SVD-2023-0204"
          },
          "title": "SPL Command Safeguards Bypass via the \u2018pivot\u2019 SPL Command in Splunk Enterprise"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "42b59230-ec95-491e-8425-5a5befa1a469",
        "assignerShortName": "Splunk",
        "cveId": "CVE-2023-22934",
        "datePublished": "2023-02-14T17:22:35.427Z",
        "dateReserved": "2023-01-10T21:39:55.583Z",
        "dateUpdated": "2025-02-28T11:03:58.707Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    JVNDB-2016-000165

    Vulnerability from jvndb - Published: 2016-09-16 05:17 - Updated:2018-01-24 02:53
    Severity
    Summary
    Splunk Enterprise and Splunk Light vulnerable to cross-site scripting
    Details
    Splunk Enterprise and Splunk Light contain a cross-site scripting vulnerability (CWE-79). Note that this vulnerability is different from JVN#71462075. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
    Impacted products
    Show details on JVN DB website

    {
      "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000165.html",
      "dc:date": "2018-01-24T11:53+09:00",
      "dcterms:issued": "2016-09-16T14:17+09:00",
      "dcterms:modified": "2018-01-24T11:53+09:00",
      "description": "Splunk Enterprise and Splunk Light contain a cross-site scripting vulnerability (CWE-79).\r\n\r\nNote that this vulnerability is different from JVN#71462075.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
      "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000165.html",
      "sec:cpe": {
        "#text": "cpe:/a:splunk:splunk",
        "@product": "Splunk",
        "@vendor": "Splunk",
        "@version": "2.2"
      },
      "sec:cvss": [
        {
          "@score": "4.3",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "@version": "2.0"
        },
        {
          "@score": "6.1",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
          "@version": "3.0"
        }
      ],
      "sec:identifier": "JVNDB-2016-000165",
      "sec:references": [
        {
          "#text": "http://jvn.jp/en/jp/JVN74244518",
          "@id": "JVN#74244518",
          "@source": "JVN"
        },
        {
          "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4858",
          "@id": "CVE-2016-4858",
          "@source": "CVE"
        },
        {
          "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4858",
          "@id": "CVE-2016-4858",
          "@source": "NVD"
        },
        {
          "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
          "@id": "CWE-79",
          "@title": "Cross-site Scripting(CWE-79)"
        }
      ],
      "title": "Splunk Enterprise and Splunk Light vulnerable to cross-site scripting"
    }

    JVNDB-2016-000164

    Vulnerability from jvndb - Published: 2016-09-16 05:16 - Updated:2017-11-27 07:55
    Severity
    Summary
    Splunk Enterprise and Splunk Light vulnerable to open redirect
    Details
    Splunk Enterprise and Splunk Light contain an open redirect vulnerability. Note that this vulnerability is different from JVN#39926655. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
    Impacted products
    Show details on JVN DB website

    {
      "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000164.html",
      "dc:date": "2017-11-27T16:55+09:00",
      "dcterms:issued": "2016-09-16T14:16+09:00",
      "dcterms:modified": "2017-11-27T16:55+09:00",
      "description": "Splunk Enterprise and Splunk Light contain an open redirect vulnerability.\r\n\r\nNote that this vulnerability is different from JVN#39926655.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
      "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000164.html",
      "sec:cpe": {
        "#text": "cpe:/a:splunk:splunk",
        "@product": "Splunk",
        "@vendor": "Splunk",
        "@version": "2.2"
      },
      "sec:cvss": [
        {
          "@score": "2.6",
          "@severity": "Low",
          "@type": "Base",
          "@vector": "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "@version": "2.0"
        },
        {
          "@score": "4.7",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N",
          "@version": "3.0"
        }
      ],
      "sec:identifier": "JVNDB-2016-000164",
      "sec:references": [
        {
          "#text": "https://jvn.jp/en/jp/JVN64800312/index.html",
          "@id": "JVN#64800312",
          "@source": "JVN"
        },
        {
          "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4859",
          "@id": "CVE-2016-4859",
          "@source": "CVE"
        },
        {
          "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4859",
          "@id": "CVE-2016-4859",
          "@source": "NVD"
        },
        {
          "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
          "@id": "CWE-20",
          "@title": "Improper Input Validation(CWE-20)"
        }
      ],
      "title": "Splunk Enterprise and Splunk Light vulnerable to open redirect"
    }

    JVNDB-2016-000163

    Vulnerability from jvndb - Published: 2016-09-16 05:08 - Updated:2017-11-27 07:55
    Severity
    Summary
    Splunk Enterprise and Splunk Light vulnerable to open redirect
    Details
    Splunk Enterprise and Splunk Light contain an open redirect vulnerability. Note that this vulnerability is different from JVN#64800312. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
    Impacted products
    Show details on JVN DB website

    {
      "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000163.html",
      "dc:date": "2017-11-27T16:55+09:00",
      "dcterms:issued": "2016-09-16T14:08+09:00",
      "dcterms:modified": "2017-11-27T16:55+09:00",
      "description": "Splunk Enterprise and Splunk Light contain an open redirect vulnerability.\r\n\r\nNote that this vulnerability is different from JVN#64800312.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
      "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000163.html",
      "sec:cpe": {
        "#text": "cpe:/a:splunk:splunk",
        "@product": "Splunk",
        "@vendor": "Splunk",
        "@version": "2.2"
      },
      "sec:cvss": [
        {
          "@score": "2.6",
          "@severity": "Low",
          "@type": "Base",
          "@vector": "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "@version": "2.0"
        },
        {
          "@score": "4.7",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N",
          "@version": "3.0"
        }
      ],
      "sec:identifier": "JVNDB-2016-000163",
      "sec:references": [
        {
          "#text": "https://jvn.jp/en/jp/JVN39926655/index.html",
          "@id": "JVN#39926655",
          "@source": "JVN"
        },
        {
          "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4857",
          "@id": "CVE-2016-4857",
          "@source": "CVE"
        },
        {
          "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4857",
          "@id": "CVE-2016-4857",
          "@source": "NVD"
        },
        {
          "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
          "@id": "CWE-20",
          "@title": "Improper Input Validation(CWE-20)"
        }
      ],
      "title": "Splunk Enterprise and Splunk Light vulnerable to open redirect"
    }

    JVNDB-2016-000162

    Vulnerability from jvndb - Published: 2016-09-16 04:56 - Updated:2017-11-27 07:55
    Severity
    Summary
    Splunk Enterprise and Splunk Lite vulnerable to cross-site scripting
    Details
    Splunk Enterprise and Splunk Lite contain a stored cross-site scripting vulnerability (CWE-79). Note that this vulnerability is different from JVN#74244518. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
    Impacted products
    Show details on JVN DB website

    {
      "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000162.html",
      "dc:date": "2017-11-27T16:55+09:00",
      "dcterms:issued": "2016-09-16T13:56+09:00",
      "dcterms:modified": "2017-11-27T16:55+09:00",
      "description": "Splunk Enterprise and Splunk Lite contain a stored cross-site scripting vulnerability (CWE-79).\r\n\r\nNote that this vulnerability is different from JVN#74244518.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
      "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000162.html",
      "sec:cpe": {
        "#text": "cpe:/a:splunk:splunk",
        "@product": "Splunk",
        "@vendor": "Splunk",
        "@version": "2.2"
      },
      "sec:cvss": [
        {
          "@score": "4.0",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "AV:N/AC:L/Au:S/C:N/I:P/A:N",
          "@version": "2.0"
        },
        {
          "@score": "4.8",
          "@severity": "Medium",
          "@type": "Base",
          "@vector": "CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N",
          "@version": "3.0"
        }
      ],
      "sec:identifier": "JVNDB-2016-000162",
      "sec:references": [
        {
          "#text": "http://jvn.jp/en/jp/JVN71462075",
          "@id": "JVN#71462075",
          "@source": "JVN"
        },
        {
          "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4856",
          "@id": "CVE-2016-4856",
          "@source": "CVE"
        },
        {
          "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4856",
          "@id": "CVE-2016-4856",
          "@source": "NVD"
        },
        {
          "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
          "@id": "CWE-79",
          "@title": "Cross-site Scripting(CWE-79)"
        }
      ],
      "title": "Splunk Enterprise and Splunk Lite vulnerable to cross-site scripting"
    }